A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V2.0). The affected application does not properly handle cacheable HTTP responses in the web service. This could allow an attacker to read and modify data stored in the local cache.
References
Link | Resource |
---|---|
https://cert-portal.siemens.com/productcert/html/ssa-716317.html | Vendor Advisory |
Configurations
History
14 Aug 2024, 18:04
Type | Values Removed | Values Added |
---|---|---|
First Time |
Siemens
Siemens sinec Traffic Analyzer |
|
CWE | NVD-CWE-Other | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.5 |
Summary |
|
|
CPE | cpe:2.3:a:siemens:sinec_traffic_analyzer:*:*:*:*:*:*:*:* | |
References | () https://cert-portal.siemens.com/productcert/html/ssa-716317.html - Vendor Advisory |
13 Aug 2024, 08:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-08-13 08:15
Updated : 2024-08-14 18:04
NVD link : CVE-2024-41906
Mitre link : CVE-2024-41906
CVE.ORG link : CVE-2024-41906
JSON object : View
Products Affected
siemens
- sinec_traffic_analyzer
CWE