VYPR

Ruggedcom Network Management Software

by Siemens Foundation

CVEs (2)

  • CVE-2017-2682HigFeb 27, 2017
    risk 0.57cvss 8.8epss 0.00

    The Siemens web application RUGGEDCOM NMS < V1.2 on port 8080/TCP and 8081/TCP could allow a remote attacker to perform a Cross-Site Request Forgery (CSRF) attack, potentially allowing an attacker to execute administrative operations, provided the targeted user has an active session and is induced to trigger a malicious request.

  • CVE-2017-2683HigFeb 27, 2017
    risk 0.53cvss 8.2epss 0.00

    A non-privileged user of the Siemens web application RUGGEDCOM NMS < V1.2 on port 8080/TCP and 8081/TCP could perform a persistent Cross-Site Scripting (XSS) attack, potentially resulting in obtaining administrative permissions.