cbcvebase.
CVE-2022-32254
published 2022-06-14

CVE-2022-32254: A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.1). A customized HTTP POST request could force the application to write…

high7.5CVSS 3.1
AVNACLPRNUINSUCHINAN
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.1). A customized HTTP POST request could force the application to write the status of a given user to a log file, exposing sensitive user information that could provide valuable guidance to an attacker.

Affected

2 ranges
VendorProductVersion rangeFixed in
siemenssinema_remote_connect_server< V3.1V3.1
siemenssinema_remote_connect_server< 3.13.1