CVE-2026-46746 | Siemens SINEC INS up to 1.0 SP2 Update 5 /api/sftp/uploadFiles os command injection (ssa-860189)

SecurityVulns

A vulnerability has been found in Siemens SINEC INS up to 1.0 SP2 Update 5 and classified as critical. This impacts an unknown function of the file /api/sftp/uploadFiles. Performing a manipulation results in os command injection.

This vulnerability is reported as CVE-2026-46746. The attack is possible to be carried out remotely. No exploit exists.

The affected component should be upgraded.VulDB Recent EntriesRead More