Siemens

Sinema Remote Connect Server

69 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.13%
  • Veröffentlicht 10.09.2024 10:15:12
  • Zuletzt bearbeitet 10.09.2024 18:54:46

A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP2). The affected application does not properly handle user session establishment and invalidation. This could allow a remote attacker to circumvent the additio...

  • EPSS 0.58%
  • Veröffentlicht 09.07.2024 12:15:20
  • Zuletzt bearbeitet 21.11.2024 09:28:28

A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). Affected applications do not properly handle log rotation. This could allow an unauthenticated remote attacker to cause a denial of service condition throu...

  • EPSS 0.24%
  • Veröffentlicht 09.07.2024 12:15:19
  • Zuletzt bearbeitet 21.11.2024 09:28:28

A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). The affected application allows authenticated, low privilege users with the 'Manage own remote connections' permission to retrieve details about other user...

  • EPSS 0.33%
  • Veröffentlicht 09.07.2024 12:15:19
  • Zuletzt bearbeitet 21.11.2024 09:28:28

A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). The affected application does not properly implement brute force protection against user credentials in its Client Communication component. This could allo...

  • EPSS 0.33%
  • Veröffentlicht 09.07.2024 12:15:19
  • Zuletzt bearbeitet 21.11.2024 09:28:28

A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). The affected application does not properly implement brute force protection against user credentials in its web API. This could allow an attacker to learn ...

  • EPSS 0.46%
  • Veröffentlicht 09.07.2024 12:15:19
  • Zuletzt bearbeitet 21.11.2024 09:28:28

A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). The affected application does not properly assign rights to temporary files created during its update process. This could allow an authenticated attacker w...

  • EPSS 0.48%
  • Veröffentlicht 09.07.2024 12:15:18
  • Zuletzt bearbeitet 21.11.2024 09:28:27

A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). Affected products allow to upload certificates. An authenticated attacker could upload a crafted certificates leading to a permanent denial-of-service situ...

  • EPSS 0.28%
  • Veröffentlicht 09.07.2024 12:15:18
  • Zuletzt bearbeitet 21.11.2024 09:28:27

A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). Affected devices do not properly validate the authentication when performing certain actions in the web interface allowing an unauthenticated attacker to a...

  • EPSS 0.18%
  • Veröffentlicht 09.07.2024 12:15:18
  • Zuletzt bearbeitet 21.11.2024 09:28:27

A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). The affected applications can be configured to allow users to manage own users. A local authenticated user with this privilege could use this modify users ...

  • EPSS 0.13%
  • Veröffentlicht 09.07.2024 12:15:18
  • Zuletzt bearbeitet 21.11.2024 09:28:28

A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). Affected applications do not properly separate the rights to edit device settings and to edit settings for communication relations. This could allow an aut...