CVE-2021-44522: High severity sipass integrated vulnerability
A vulnerability has been identified in SiPass integrated V2.76 (All versions), SiPass integrated V2.80 (All versions), SiPass integrated V2.85 (All versions), Siveillance Identity V1.5 (All versions), Siveillance Identity V1.6 (All versions < V1.6.284.0). Affected applications insufficiently limit the access to the internal message broker system. This could allow an unauthenticated remote attacker to subscribe to arbitrary message queues.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-44522?
The severity of CVE-2021-44522 is high.
What is the affected software of CVE-2021-44522?
The affected software of CVE-2021-44522 is Siemens SiPass integrated V2.76, Siemens SiPass integrated V2.80, Siemens SiPass integrated V2.85, Siveillance Identity V1.5, and Siveillance Identity V1.6 (versions < V1.6.284.0).
How can I fix the vulnerability in CVE-2021-44522?
To fix the vulnerability in CVE-2021-44522, update to the latest version of SiPass integrated or Siveillance Identity software.
Where can I find more information about CVE-2021-44522?
More information about CVE-2021-44522 can be found in the following references: [Reference 1](https://cert-portal.siemens.com/productcert/pdf/ssa-160202.pdf), [Reference 2](https://cert-portal.siemens.com/productcert/pdf/ssa-463116.pdf).
What is the CWE ID of CVE-2021-44522?
The CWE ID of CVE-2021-44522 is 668.