CVE-2021-44523: Critical severity sipass integrated vulnerability
A vulnerability has been identified in SiPass integrated V2.76 (All versions), SiPass integrated V2.80 (All versions), SiPass integrated V2.85 (All versions), Siveillance Identity V1.5 (All versions), Siveillance Identity V1.6 (All versions < V1.6.284.0). Affected applications insufficiently limit the access to the internal activity feed database. This could allow an unauthenticated remote attacker to read, modify or delete activity feed entries.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-44523?
The severity of CVE-2021-44523 is critical.
Which applications are affected by CVE-2021-44523?
SiPass integrated V2.76, SiPass integrated V2.80, SiPass integrated V2.85, Siveillance Identity V1.5, Siveillance Identity V1.6 (versions < V1.6.284.0) are affected by CVE-2021-44523.
What is the vulnerability description of CVE-2021-44523?
CVE-2021-44523 is a vulnerability where the affected applications insufficiently limit certain privileged operations resulting in potential remote code execution.
Are there any solutions available for CVE-2021-44523?
Siemens has released security advisories with recommended solutions for CVE-2021-44523, which can be found at the provided reference links.
What is the Common Weakness Enumeration (CWE) ID for CVE-2021-44523?
CVE-2021-44523 is associated with CWE-668.