Arbitrary File Upload Vulnerability in Siveillance Control Products by Siemens
CVE-2026-50093

8.9HIGH

What is CVE-2026-50093?

A severe vulnerability has been detected in the OIS web module of Siemens Siveillance Control products that allows attackers to upload arbitrary files to the server. This exploitation could lead to unauthorized access and potentially grant attackers root access to the host system, posing a significant risk of full compromise to the affected environments. It is crucial for users to mitigate this risk by upgrading to the latest versions of Siveillance Control products.

Affected Version(s)

Siveillance Control Pro V3.0 0

Siveillance Control Pro V4.0 0

Siveillance Control V3.0 0

References

CVSS V4

Score:
8.9
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.