CVE-2024-39867
- EPSS 0.28%
- Published 09.07.2024 12:15:17
- Last modified 21.11.2024 09:28:27
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). Affected devices do not properly validate the authentication when performing certain actions in the web interface allowing an unauthenticated attacker to a...
CVE-2024-39866
- EPSS 0.21%
- Published 09.07.2024 12:15:17
- Last modified 21.11.2024 09:28:27
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). The affected application allows users to upload encrypted backup files. This could allow an attacker with access to the backup encryption key and with the ...
CVE-2024-39865
- EPSS 8.05%
- Published 09.07.2024 12:15:17
- Last modified 21.11.2024 09:28:27
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). The affected application allows users to upload encrypted backup files. As part of this backup, files can be restored without correctly checking the path o...
CVE-2024-39571
- EPSS 1.15%
- Published 09.07.2024 12:15:16
- Last modified 21.11.2024 09:28:02
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 HF1). Affected applications are vulnerable to command injection due to missing server side input sanitation when loading SNMP configurations. This could allow an...
CVE-2024-39570
- EPSS 1.92%
- Published 09.07.2024 12:15:16
- Last modified 21.11.2024 09:28:02
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 HF1). Affected applications are vulnerable to command injection due to missing server side input sanitation when loading VxLAN configurations. This could allow a...
CVE-2022-32257
- EPSS 0.45%
- Published 12.03.2024 11:15:45
- Last modified 21.11.2024 07:06:02
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2). The affected application consists of a web service that lacks proper access control for some of the endpoints. This could lead to unauthorized access to resour...
CVE-2022-32262
- EPSS 2.15%
- Published 14.06.2022 10:15:21
- Last modified 21.11.2024 07:06:03
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.1). The affected application contains a file upload server that is vulnerable to command injection. An attacker could use this to achieve arbitrary code execution.
CVE-2022-32258
- EPSS 0.26%
- Published 14.06.2022 10:15:21
- Last modified 21.11.2024 07:06:02
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.1). The affected application contains an older feature that allows to import device configurations via a specific endpoint. An attacker could use this vulnerabilit...
CVE-2022-32259
- EPSS 0.19%
- Published 14.06.2022 10:15:21
- Last modified 21.11.2024 07:06:02
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.1). The system images for installation or update of the affected application contain unit test scripts with sensitive information. An attacker could gain informati...
CVE-2022-32260
- EPSS 0.1%
- Published 14.06.2022 10:15:21
- Last modified 21.11.2024 07:06:02
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). The affected application creates temporary user credentials for UMC (User Management Component) users. An attacker could use these temporary credentials fo...