CVE-2026-27661: Medium severity Siemens SINEC Security Monitor vulnerability
Published Mar 10, 2026
·Updated
A vulnerability has been identified in SINEC Security Monitor (All versions < V4.9.0). The affected application leaks confidential information in metadata, and files such as information on contributors and email address, on SSM Server.
Affected Software
2 affected components
Siemens SINEC Security Monitor<4.9.0
Siemens SINEC Security Monitor<4.9.0
Event History
Mar 10, 2026
CVE Published
via MITRE·04:07 PM
Data Sourced
via MITRE·04:07 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·06:18 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2026-27661?
CVE-2026-27661 has been classified as a high severity vulnerability due to the leakage of confidential information.
2
How do I fix CVE-2026-27661?
To fix CVE-2026-27661, update your SINEC Security Monitor to version 4.9.0 or later.
3
What information is leaked in CVE-2026-27661?
CVE-2026-27661 leaks confidential metadata including contributors' information and email addresses.
4
Which versions of SINEC Security Monitor are affected by CVE-2026-27661?
All versions of SINEC Security Monitor prior to version 4.9.0 are affected by CVE-2026-27661.
5
Who is the vendor responsible for CVE-2026-27661?
The vendor responsible for this vulnerability is Siemens.