First published: Tue Aug 13 2024(Updated: )
A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V2.0). The affected application do not properly enforce restriction of excessive authentication attempts. This could allow an unauthenticated attacker to conduct brute force attacks against legitimate user credentials or keys.
Credit: productcert@siemens.com
Affected Software | Affected Version | How to fix |
---|---|---|
Siemens Sinec Traffic Analyzer | <2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-41904 has been classified with a high severity due to its potential for unauthorized brute force attacks.
To fix CVE-2024-41904, upgrade the SINEC Traffic Analyzer to version 2.0 or later to ensure proper authentication attempt restrictions.
CVE-2024-41904 affects all versions of SINEC Traffic Analyzer prior to 2.0.
An attacker can exploit CVE-2024-41904 to perform brute force attacks and potentially gain unauthorized access to the SINEC Traffic Analyzer.
SINEC Traffic Analyzer is a software application from Siemens that monitors and analyzes traffic, and it is vulnerable to excessive authentication attempts in versions below 2.0.