cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2019-6581,https://securityvulnerability.io/vulnerability/CVE-2019-6581,Unauthorized Role Change Vulnerability in Siveillance VMS from Siemens,"A vulnerability exists within the Siveillance VMS software that allows an authenticated attacker with network access to port 80/TCP to change user roles without appropriate authorization. This security flaw can be exploited remotely, compromising the system's confidentiality, integrity, and availability. There is no requirement for user interaction to carry out this exploit, highlighting a significant risk in network security for the affected versions of Siveillance VMS. At the time of this advisory, there have been no reported public exploits targeting this vulnerability.",Siemens,"Siveillance Vms 2017 R2,Siveillance Vms 2018 R1,Siveillance Vms 2018 R2,Siveillance Vms 2018 R3,Siveillance Vms 2019 R1",8.8,HIGH,0.0008800000068731606,false,,false,false,false,,,false,false,,2019-06-12T13:47:57.000Z,0 CVE-2019-6582,https://securityvulnerability.io/vulnerability/CVE-2019-6582,Unauthorized Modification in Siveillance VMS by Siemens,"A vulnerability in Siemens Siveillance VMS allows attackers with network access to port 80/TCP to modify user-defined event properties without proper authorization. This issue affects multiple versions of the product, enabling an authenticated attacker to exploit the service without requiring user interaction. The successful exploitation of this vulnerability compromises the integrity of the event properties and may affect the availability of related functionalities. As of the advisory's publication, there has been no known public exploitation of this vulnerability.",Siemens,"Siveillance Vms 2017 R2,Siveillance Vms 2018 R1,Siveillance Vms 2018 R2,Siveillance Vms 2018 R3,Siveillance Vms 2019 R1",7.1,HIGH,0.0006500000017695129,false,,false,false,false,,,false,false,,2019-06-12T13:47:57.000Z,0 CVE-2019-6580,https://securityvulnerability.io/vulnerability/CVE-2019-6580,Unauthorized Access Vulnerability in Siveillance VMS by Siemens,"A vulnerability exists in Siemens Siveillance VMS, affecting multiple versions across different releases. An attacker with access to port 80/TCP can alter device properties without proper authorization. This security flaw does not require user interaction to exploit, posing significant risks to the confidentiality, integrity, and availability of the system. At the time of the advisory, there were no known instances of public exploitation.",Siemens,"Siveillance Vms 2017 R2,Siveillance Vms 2018 R1,Siveillance Vms 2018 R2,Siveillance Vms 2018 R3,Siveillance Vms 2019 R1",9.8,CRITICAL,0.002409999957308173,false,,false,false,false,,,false,false,,2019-06-12T13:47:57.000Z,0