Vulnerabilities (CVE)

Filtered by vendor Siemens Subscribe
Filtered by product Sicam Toolbox Ii
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-39062 1 Siemens 1 Sicam Toolbox Ii 2024-02-05 N/A 7.8 HIGH
A vulnerability has been identified in SICAM TOOLBOX II (All versions < V07.10). Affected applications do not properly set permissions for product folders. This could allow an authenticated attacker with low privileges to replace DLLs and conduct a privilege escalation.
CVE-2023-38641 1 Siemens 1 Sicam Toolbox Ii 2024-02-05 N/A 7.8 HIGH
A vulnerability has been identified in SICAM TOOLBOX II (All versions < V07.10). The affected application's database service is executed as `NT AUTHORITY\SYSTEM`. This could allow a local attacker to execute operating system commands with elevated privileges.
CVE-2021-45106 1 Siemens 1 Sicam Toolbox Ii 2024-02-04 4.0 MEDIUM 6.5 MEDIUM
A vulnerability has been identified in SICAM TOOLBOX II (All versions). Affected applications use a circumventable access control within a database service. This could allow an attacker to access the database.