CVE-2021-37183: Medium severity Siemens SINEMA Remote Connect Server vulnerability
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.0 SP2). The affected software allows sending send-to-sleep notifications to the managed devices. An unauthenticated attacker in the same network of the affected system can abuse these notifications to cause a Denial-of-Service condition in the managed devices.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2021-37183.
What is the affected software?
The affected software is Siemens SINEMA Remote Connect Server, all versions less than V3.0 SP2.
What is the severity of CVE-2021-37183?
The severity of CVE-2021-37183 is medium with a CVSS score of 6.5.
How can an attacker exploit this vulnerability?
An unauthenticated attacker in the same network of the affected system can abuse send-to-sleep notifications to cause a Denial of Service (DoS) condition.
Is there a fix available for this vulnerability?
Yes, Siemens has released an update to address this vulnerability. Please refer to the provided reference for more details.