Siemens Mendix是德国西门子(Siemens)公司的一套低代码应用程序开发平台。该平台提供应用程序开发、测试、部署和迭代等功能。 Siemens Mendix SAML若干版本存在跨站脚本漏洞,该漏洞源于其模块允许攻击者利用反射型跨站脚本通过诱骗用户访问恶意链接来提取敏感信息。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Siemens | Mendix SAML (Mendix 8 compatible) | All versions >= V2.3.0 < V2.3.4 | - |
|
| Siemens | Mendix SAML (Mendix 9 compatible, New Track) | All versions >= V3.3.0 < V3.3.9 | - |
|
| Siemens | Mendix SAML (Mendix 9 compatible, Upgrade Track) | All versions >= V3.3.0 < V3.3.8 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-45092 | 9.9 CRITICAL | Siemens SINEC NMS 路径遍历漏洞 |
| CVE-2022-45093 | 8.5 HIGH | Siemens SINEC NMS 路径遍历漏洞 |
| CVE-2022-45094 | 8.4 HIGH | Siemens SINEC NMS 命令注入漏洞 |
| CVE-2022-43513 | 8.2 HIGH | Siemens Automation License Manager 安全漏洞 |
| CVE-2022-47967 | 7.8 HIGH | Siemens Solid Edge 缓冲区错误漏洞 |
| CVE-2022-47935 | 7.8 HIGH | Siemens JT Open Toolkit 缓冲区错误漏洞 |
| CVE-2022-43514 | 7.7 HIGH | Siemens Automation License Manager 路径遍历漏洞 |
| CVE-2022-38773 | 4.6 MEDIUM | Siemens SIMATIC S7-1500 安全漏洞 |
No comments yet