First published: Tue Aug 13 2024(Updated: )
A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V2.0). The affected application does not properly handle cacheable HTTP responses in the web service. This could allow an attacker to read and modify data stored in the local cache.
Credit: productcert@siemens.com
Affected Software | Affected Version | How to fix |
---|---|---|
Siemens Sinec Traffic Analyzer | <2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-41906 has been rated as a high severity vulnerability due to its potential to allow unauthorized data access and modification.
To fix CVE-2024-41906, update the SINEC Traffic Analyzer to version 2.0 or later.
Exploitation of CVE-2024-41906 could lead to an attacker being able to read and modify cached data on the affected system.
CVE-2024-41906 affects all versions of SINEC Traffic Analyzer prior to version 2.0.
Currently, there are no known workarounds for CVE-2024-41906 other than upgrading to the latest version.