Lucene search

K
cvelistSiemensCVELIST:CVE-2020-25240
HistoryMar 15, 2021 - 5:03 p.m.

CVE-2020-25240

2021-03-1517:03:30
CWE-863
siemens
www.cve.org
4
vulnerability
sinema remote connect server
unprivileged access
guessing url
availability
integrity
information gain

AI Score

8.6

Confidence

High

EPSS

0.001

Percentile

39.5%

A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.0). Unpriviledged users can access services when guessing the url. An attacker could impact availability, integrity and gain information from logs and templates of the service.

CNA Affected

[
  {
    "product": "SINEMA Remote Connect Server",
    "vendor": "Siemens",
    "versions": [
      {
        "status": "affected",
        "version": "All versions < V3.0"
      }
    ]
  }
]

AI Score

8.6

Confidence

High

EPSS

0.001

Percentile

39.5%

Related for CVELIST:CVE-2020-25240