CVE-2023-43504
https://notcve.org/view.php?id=CVE-2023-43504
A vulnerability has been identified in COMOS (All versions < V10.4.4). Ptmcast executable used for testing cache validation service in affected application is vulnerable to Structured Exception Handler (SEH) based buffer overflow. This could allow an attacker to execute arbitrary code on the target system or cause denial of service condition. Se ha identificado una vulnerabilidad en COMOS (Todas las versiones < V10.4.4). El ejecutable de Ptmcast utilizado para probar el servicio de validación de caché en la aplicación afectada es vulnerable al desbordamiento del búfer basado en Structured Exception Handler (SEH). • https://cert-portal.siemens.com/productcert/pdf/ssa-137900.pdf • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •
CVE-2023-43503
https://notcve.org/view.php?id=CVE-2023-43503
A vulnerability has been identified in COMOS (All versions < V10.4.4). Caching system in the affected application leaks sensitive information such as user and project information in cleartext via UDP. Se ha identificado una vulnerabilidad en COMOS (Todas las versiones < V10.4.4). El sistema de almacenamiento en caché de la aplicación afectada filtra información confidencial, como información del usuario y del proyecto, en texto plano a través de UDP. • https://cert-portal.siemens.com/productcert/pdf/ssa-137900.pdf • CWE-319: Cleartext Transmission of Sensitive Information •
CVE-2021-37198
https://notcve.org/view.php?id=CVE-2021-37198
A vulnerability has been identified in COMOS V10.2 (All versions only if web components are used), COMOS V10.3 (All versions < V10.3.3.3 only if web components are used), COMOS V10.4 (All versions < V10.4.1 only if web components are used). The COMOS Web component of COMOS uses a flawed implementation of CSRF prevention. An attacker could exploit this vulnerability to perform cross-site request forgery attacks. Se ha identificado una vulnerabilidad en COMOS V10.2 (Todas las versiones sólo si se utilizan componentes web), COMOS V10.3 (Todas las versiones anteriores a V10.3.3.3 sólo si se utilizan componentes web), COMOS V10.4 (Todas las versiones anteriores a V10.4.1 sólo si se utilizan componentes web). El componente web de COMOS utiliza una implementación defectuosa de la prevención de CSRF. • https://cert-portal.siemens.com/productcert/pdf/ssa-995338.pdf • CWE-352: Cross-Site Request Forgery (CSRF) •
CVE-2021-37197
https://notcve.org/view.php?id=CVE-2021-37197
A vulnerability has been identified in COMOS V10.2 (All versions only if web components are used), COMOS V10.3 (All versions < V10.3.3.3 only if web components are used), COMOS V10.4 (All versions < V10.4.1 only if web components are used). The COMOS Web component of COMOS is vulnerable to SQL injections. This could allow an attacker to execute arbitrary SQL statements. Se ha identificado una vulnerabilidad en COMOS V10.2 (Todas las versiones sólo si se utilizan componentes web), COMOS V10.3 (Todas las versiones anteriores a V10.3.3.3 sólo si se utilizan componentes web), COMOS V10.4 (Todas las versiones anteriores a V10.4.1 sólo si se utilizan componentes web). El componente COMOS Web de COMOS es vulnerable a inyecciones SQL. • https://cert-portal.siemens.com/productcert/pdf/ssa-995338.pdf • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •
CVE-2021-37195
https://notcve.org/view.php?id=CVE-2021-37195
A vulnerability has been identified in COMOS V10.2 (All versions only if web components are used), COMOS V10.3 (All versions < V10.3.3.3 only if web components are used), COMOS V10.4 (All versions < V10.4.1 only if web components are used). The COMOS Web component of COMOS accepts arbitrary code as attachment to tasks. This could allow an attacker to inject malicious code that is executed when loading the attachment. Se ha identificado una vulnerabilidad en COMOS V10.2 (Todas las versiones sólo si se utilizan componentes web), COMOS V10.3 (Todas las versiones anteriores a V10.3.3.3 sólo si se utilizan componentes web), COMOS V10.4 (Todas las versiones anteriores a V10.4.1 sólo si se utilizan componentes web). El componente web de COMOS acepta código arbitrario como adjunto a las tareas. • https://cert-portal.siemens.com/productcert/pdf/ssa-995338.pdf • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CWE-80: Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) •