Denial of Service Vulnerability in SINEMA Remote Connect Server by Siemens
CVE-2024-39869

6.5MEDIUM

Key Information:

Vendor
Siemens
Vendor
CVE Published:
9 July 2024

Summary

A vulnerability in SINEMA Remote Connect Server allows authenticated users to upload malicious certificates, resulting in a permanent denial-of-service condition. Once exploited, recovery requires manual removal of the harmful certificate, potentially disrupting services and access for legitimate users. Organizations using affected versions must take immediate action to secure their systems and prevent exploitation.

Affected Version(s)

SINEMA Remote Connect Server 0

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

.