Siemens Polarion是德国西门子(Siemens)公司的一套应用程序生命周期管理软件。该软件支持在统一、模块化、基于浏览器的软件环境上进行端到端的企业级应用程序开发。 Siemens Polarion Subversion Webclient中存在跨站请求伪造漏洞。该漏洞源于WEB应用未充分验证请求是否来自可信用户。攻击者可利用该漏洞通过受影响客户端向服务器发送非预期的请求。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Siemens AG | Polarion Subversion Webclient | All versions | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2020-10049 | Siemens SIMATIC RTLS Locating Manager 安全漏洞 | |
| CVE-2020-10050 | Siemens SIMATIC RTLS Locating Manager 安全漏洞 | |
| CVE-2020-10051 | Siemens SIMATIC RTLS 代码问题漏洞 | |
| CVE-2020-10056 | Siemens LMU 安全漏洞 | |
| CVE-2020-15784 | SUSE Linux Enterprise Server 安全漏洞 | |
| CVE-2020-15785 | Siemens Siveillance Video Client 加密问题漏洞 | |
| CVE-2020-15788 | Siemens Polarion Subversion Webclient 跨站脚本漏洞 | |
| CVE-2020-15790 | Siemens Spectrum Power 信息泄露漏洞 |
No comments yet