Lucene search

K
cvelistSiemensCVELIST:CVE-2019-10941
HistorySep 14, 2021 - 10:47 a.m.

CVE-2019-10941

2021-09-1410:47:02
CWE-306
siemens
www.cve.org
2
vulnerability
sinema server
network access
authentication
administrative user
system configuration backup files
exploitation

AI Score

5.3

Confidence

High

EPSS

0.001

Percentile

35.9%

A vulnerability has been identified in SINEMA Server (All versions < V14 SP3). Missing authentication for functionality that requires administrative user identity could allow an attacker to obtain encoded system configuration backup files. This is only possible through network access to the affected system, and successful exploitation requires no system privileges.

CNA Affected

[
  {
    "product": "SINEMA Server",
    "vendor": "Siemens",
    "versions": [
      {
        "status": "affected",
        "version": "All versions < V14 SP3"
      }
    ]
  }
]

AI Score

5.3

Confidence

High

EPSS

0.001

Percentile

35.9%

Related for CVELIST:CVE-2019-10941