CVE-2022-32258: High severity siemens sinema remote connect vulnerability
Published Jun 14, 2022
·Updated
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.1). The affected application contains an older feature that allows to import device configurations via a specific endpoint. An attacker could use this vulnerability for information disclosure.
Affected Software
1 affected component
Siemens SINEMA Remote Connect Server<3.1
Remediation
Event History
Jun 14, 2022
CVE Published
via MITRE·09:22 AM
Data Sourced
via MITRE·09:22 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this SINEMA Remote Connect Server vulnerability?
The vulnerability ID for this SINEMA Remote Connect Server vulnerability is CVE-2022-32258.
2
What is the affected version of SINEMA Remote Connect Server?
All versions prior to V3.1 are affected by this vulnerability.
3
What is the severity of CVE-2022-32258?
The severity of CVE-2022-32258 is high with a CVSS score of 7.5.
4
What is the impact of this vulnerability?
This vulnerability can be used by an attacker to gain unauthorized access to sensitive information.
5
Is there a fix available for this vulnerability?
Yes, a fix is available. Users should update to version V3.1 or later of SINEMA Remote Connect Server.