CVE-2024-39870

Publication date

2024-07-09 12:05:26

Family

siemens

State

PUBLISHED

Description

A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). The affected applications can be configured to allow users to manage own users. A local authenticated user with this privilege could use this modify users outside of their own scope as well as to escalate privileges.