CVE-2022-32260
- EPSS 0.1%
- Veröffentlicht 14.06.2022 10:15:21
- Zuletzt bearbeitet 21.11.2024 07:06:02
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). The affected application creates temporary user credentials for UMC (User Management Component) users. An attacker could use these temporary credentials fo...
CVE-2022-32259
- EPSS 0.19%
- Veröffentlicht 14.06.2022 10:15:21
- Zuletzt bearbeitet 21.11.2024 07:06:02
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.1). The system images for installation or update of the affected application contain unit test scripts with sensitive information. An attacker could gain informati...
CVE-2022-32258
- EPSS 0.26%
- Veröffentlicht 14.06.2022 10:15:21
- Zuletzt bearbeitet 21.11.2024 07:06:02
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.1). The affected application contains an older feature that allows to import device configurations via a specific endpoint. An attacker could use this vulnerabilit...
CVE-2022-32253
- EPSS 0.18%
- Veröffentlicht 14.06.2022 10:15:20
- Zuletzt bearbeitet 21.11.2024 07:06:01
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.1). Due to improper input validation, the OpenSSL certificate's password could be printed to a file reachable by an attacker.
CVE-2022-27221
- EPSS 0.37%
- Veröffentlicht 14.06.2022 10:15:20
- Zuletzt bearbeitet 21.11.2024 06:55:26
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.1). An attacker in machine-in-the-middle could obtain plaintext secret values by observing length differences during a series of guesses in which a string in an HT...
CVE-2022-29034
- EPSS 7.05%
- Veröffentlicht 14.06.2022 10:15:20
- Zuletzt bearbeitet 21.11.2024 06:58:22
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.1). An error message pop up window in the web interface of the affected application does not prevent injection of JavaScript code. This could allow attackers to...
CVE-2022-32251
- EPSS 0.31%
- Veröffentlicht 14.06.2022 10:15:20
- Zuletzt bearbeitet 21.11.2024 07:06:01
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.1). There is a missing authentication verification for a resource used to change the roles and permissions of a user. This could allow an attacker to change the pe...
CVE-2022-32252
- EPSS 0.06%
- Veröffentlicht 14.06.2022 10:15:20
- Zuletzt bearbeitet 21.11.2024 07:06:01
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.1). The application does not perform the integrity check of the update packages. Without validation, an admin user might be tricked to install a malicious package,...
CVE-2022-32254
- EPSS 0.29%
- Veröffentlicht 14.06.2022 10:15:20
- Zuletzt bearbeitet 21.11.2024 07:06:01
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.1). A customized HTTP POST request could force the application to write the status of a given user to a log file, exposing sensitive user information that could pr...
CVE-2022-32255
- EPSS 0.24%
- Veröffentlicht 14.06.2022 10:15:20
- Zuletzt bearbeitet 21.11.2024 07:06:02
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.1). The affected application consists of a web service that lacks proper access control for some of the endpoints. This could lead to unauthorized access to limite...