Vulnerability Details CVE-2022-30527
A vulnerability has been identified in SINEC NMS (All versions < V2.0). The affected application assigns improper access rights to specific folders containing executable files and libraries.
This could allow an authenticated local attacker to inject arbitrary code and escalate privileges.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 24.7%
CVSS Severity
CVSS v3 Score 7.8
Products affected by CVE-2022-30527
-
cpe:2.3:a:siemens:sinec_nms:1.0
-
cpe:2.3:a:siemens:sinec_nms:1.0.3