cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score
CVE-2021-41547,https://securityvulnerability.io/vulnerability/CVE-2021-41547,Path Traversal Vulnerability in Siemens Teamcenter Active Workspace,"A vulnerability has been detected in multiple versions of Siemens Teamcenter Active Workspace, involving an insecure unzip function. This flaw enables potential attackers to exploit the application, leading to a zip path traversal attack. Successful exploitation may grant attackers the ability to execute commands on the system with administrative privileges, posing serious risks to data integrity and system security. It is crucial for users to upgrade to the latest versions to mitigate this threat.",Siemens,"Teamcenter Active Workspace V4.3,Teamcenter Active Workspace V5.0,Teamcenter Active Workspace V5.1,Teamcenter Active Workspace V5.2",7.2,HIGH,0.001820000004954636,false,,false,false,false,,,false,false,,2021-12-14T12:06:36.000Z,0
CVE-2021-40357,https://securityvulnerability.io/vulnerability/CVE-2021-40357,Path Traversal Vulnerability in Teamcenter Active Workspace by Siemens,"A path traversal vulnerability exists in multiple versions of Teamcenter Active Workspace that could allow an attacker to circumvent security restrictions, providing the potential for unauthorized access to other services running on the host. This vulnerability highlights the importance of properly securing application paths to protect sensitive data and maintain operational integrity.",Siemens,"Teamcenter Active Workspace V4.3,Teamcenter Active Workspace V5.0,Teamcenter Active Workspace V5.1,Teamcenter Active Workspace V5.2",4.9,MEDIUM,0.000859999970998615,false,,false,false,false,,,false,false,,2021-09-14T10:48:01.000Z,0
CVE-2021-33711,https://securityvulnerability.io/vulnerability/CVE-2021-33711,Information Leak in Teamcenter Active Workspace by Siemens,"A vulnerability exists in Teamcenter Active Workspace that permits the application to expose verbose error messages. These messages can inadvertently leak sensitive information, such as complete file paths, potentially exposing system structure and confidential data to unauthorized users.",Siemens,"Teamcenter Active Workspace V4,Teamcenter Active Workspace V5.0,Teamcenter Active Workspace V5.1",5.3,MEDIUM,0.0008399999933317304,false,,false,false,false,,,false,false,,2021-07-13T11:03:02.000Z,0
CVE-2021-33710,https://securityvulnerability.io/vulnerability/CVE-2021-33710,Reflected Cross-Site Scripting in Teamcenter Active Workspace by Siemens,"A reflected cross-site scripting (XSS) vulnerability has been detected in the web interface of Teamcenter Active Workspace. This flaw affects several versions of the product, allowing attackers to inject malicious JavaScript code via specially crafted links. Users tricked into clicking these links may inadvertently execute harmful scripts in their browsers, potentially leading to unauthorized actions and data exposure. It's essential for organizations using affected versions to apply security updates and implement safeguards to mitigate this risk.",Siemens,"Teamcenter Active Workspace V4,Teamcenter Active Workspace V5.0,Teamcenter Active Workspace V5.1",6.1,MEDIUM,0.0007800000021234155,false,,false,false,false,,,false,false,,2021-07-13T11:03:01.000Z,0
CVE-2021-33709,https://securityvulnerability.io/vulnerability/CVE-2021-33709,Token Leak in Siemens Teamcenter Active Workspace Due to Malformed Requests,"A vulnerability exists in Siemens Teamcenter Active Workspace that allows remote attackers to exploit improperly handled inputs to leak application tokens. This occurs when malformed requests are sent to the affected versions of the software, potentially exposing sensitive information and compromising system security. Users are advised to apply the necessary updates and mitigate risks.",Siemens,"Teamcenter Active Workspace V4,Teamcenter Active Workspace V5.0,Teamcenter Active Workspace V5.1",4.3,MEDIUM,0.0008200000156648457,false,,false,false,false,,,false,false,,2021-07-13T11:03:00.000Z,0