Information Leak in Teamcenter Active Workspace by Siemens
CVE-2021-33711

5.3MEDIUM

Summary

A vulnerability exists in Teamcenter Active Workspace that permits the application to expose verbose error messages. These messages can inadvertently leak sensitive information, such as complete file paths, potentially exposing system structure and confidential data to unauthorized users.

Affected Version(s)

Teamcenter Active Workspace V4 All versions < V4.3.9

Teamcenter Active Workspace V5.0 All versions < V5.0.7

Teamcenter Active Workspace V5.1 All versions < V5.1.4

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.