A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). The affected application does not properly implement brute force protection against user credentials in its web API. This could allow an attacker to learn user credentials that are vulnerable to brute force attacks.
History

Mon, 09 Sep 2024 15:45:00 +0000

Type Values Removed Values Added
First Time appeared Siemens
Siemens sinema Remote Connect Server
CPEs cpe:2.3:a:siemens:sinema_remote_connect_server:*:*:*:*:*:*:*:*
cpe:2.3:a:siemens:sinema_remote_connect_server:3.2:-:*:*:*:*:*:*
cpe:2.3:a:siemens:sinema_remote_connect_server:3.2:hf1:*:*:*:*:*:*
Vendors & Products Siemens
Siemens sinema Remote Connect Server

cve-icon MITRE

Status: PUBLISHED

Assigner: siemens

Published: 2024-07-09T12:05:30.268Z

Updated: 2024-08-02T04:33:10.241Z

Reserved: 2024-07-01T13:05:40.288Z

Link: CVE-2024-39873

cve-icon Vulnrichment

Updated: 2024-08-02T04:33:10.241Z

cve-icon NVD

Status : Analyzed

Published: 2024-07-09T12:15:19.317

Modified: 2024-09-09T15:25:21.893

Link: CVE-2024-39873

cve-icon Redhat

No data.