CVE-2020-25240: High severity siemens sinema remote connect vulnerability
Published Mar 15, 2021
·Updated
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.0). Unpriviledged users can access services when guessing the url. An attacker could impact availability, integrity and gain information from logs and templates of the service.
Affected Software
1 affected component
Siemens SINEMA Remote Connect Server<3.0
Event History
Mar 15, 2021
CVE Published
via MITRE·05:03 PM
Data Sourced
via MITRE·05:03 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability identified in SINEMA Remote Connect Server?
The vulnerability identified in SINEMA Remote Connect Server is CVE-2020-25240.
2
What is the severity of CVE-2020-25240?
The severity of CVE-2020-25240 is high with a severity value of 8.8.
3
How can unprivileged users exploit CVE-2020-25240?
Unprivileged users can exploit CVE-2020-25240 by guessing the URL and gaining access to services.
4
What are the potential impacts of CVE-2020-25240?
CVE-2020-25240 could impact availability, integrity, and allow an attacker to gain information from logs and templates of the service.
5
How can I fix the vulnerability in SINEMA Remote Connect Server?
To fix the vulnerability in SINEMA Remote Connect Server, upgrade to version 3.0 or higher.