CVE-2024-39875: Medium severity siemens sinema remote connect vulnerability
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). The affected application allows authenticated, low privilege users with the 'Manage own remote connections' permission to retrieve details about other users and group memberships.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-39875?
CVE-2024-39875 has been classified as a medium-severity vulnerability.
How do I fix CVE-2024-39875?
To fix CVE-2024-39875, upgrade to SINEMA Remote Connect Server version 3.2 SP1 or later.
What type of access does CVE-2024-39875 allow to attackers?
CVE-2024-39875 allows authenticated, low privilege users to access details about other users and their group memberships.
Which versions of SINEMA Remote Connect Server are affected by CVE-2024-39875?
All versions of SINEMA Remote Connect Server prior to version 3.2 SP1 are affected by CVE-2024-39875.
What permissions are required to exploit CVE-2024-39875?
To exploit CVE-2024-39875, an attacker must have the 'Manage own remote connections' permission.