Token Leak in Siemens Teamcenter Active Workspace Due to Malformed Requests
CVE-2021-33709
Key Information:
- Vendor
Siemens
- Status
- Vendor
- CVE Published:
- 13 July 2021
What is CVE-2021-33709?
A vulnerability exists in Siemens Teamcenter Active Workspace that allows remote attackers to exploit improperly handled inputs to leak application tokens. This occurs when malformed requests are sent to the affected versions of the software, potentially exposing sensitive information and compromising system security. Users are advised to apply the necessary updates and mitigate risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Teamcenter Active Workspace V4 All versions < V4.3.9
Teamcenter Active Workspace V5.0 All versions < V5.0.7
Teamcenter Active Workspace V5.1 All versions < V5.1.4
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved