Privilege Escalation Vulnerability in SINEMA Remote Connect Client by Siemens
CVE-2021-31338
7.8HIGH
Summary
A security vulnerability in SINEMA Remote Connect Client enables attackers to modify configuration settings through an unauthenticated channel. This flaw may let a local attacker elevate privileges and run arbitrary code on the device, potentially compromising the system's integrity and security.
Affected Version(s)
SINEMA Remote Connect Client All versions < V3.0 SP1
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved