Siemens COMOS before 9.1 Patch 413, 9.2 before Update 03 Patch 023, and 10.0 before Patch 005 allows remote authenticated users to obtain database administrative access via unspecified method calls.
| Software | From | Fixed in |
|---|---|---|
| siemens / comos | 10.0 | 10.0.x |
| siemens / comos | 9.2-03 | 9.2-03.x |
| siemens / comos | - | 9.1.x |