Home
CRITICAL: 9.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:NCRITICAL: 9.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:NDefault status
unaffected
Any version
affected
Description
UNI-NMS-Lite is vulnerable to a command injection attack that could allow an unauthenticated attacker to read or manipulate device data.
Problem types
Product status
Any version
Credits
Kev Breen of Immersive reported these vulnerabilities to CISA.
References
www.cisa.gov/news-events/ics-advisories/icsa-25-114-06