Description
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.0 SP2). An unauthenticated attacker in the same network of the affected system could manipulate certain parameters and set a valid user of the affected software as invalid (or vice-versa).
Related CPE's
a
siemens
sinema_remote_connect_server
3
References
https://cert-portal.siemens.com/productcert/pdf/ssa-334944.pdf
PatchVendor Advisory
https://cert-portal.siemens.com/productcert/pdf/ssa-334944.pdf
PatchVendor Advisory
CVSS impact metrics
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
4.3 · Medium
Information
Source identifier
Vulnerability status
Modified
Published
2021-09-14T09:15:26.170Z
4 years agoLast modified
2025-04-23T18:15:30.300Z
10 months ago