VYPR
Medium severity5.3NVD Advisory· Published Sep 14, 2021· Updated Jun 17, 2026

CVE-2019-10941

CVE-2019-10941

Description

A vulnerability has been identified in SINEMA Server (All versions < V14 SP3). Missing authentication for functionality that requires administrative user identity could allow an attacker to obtain encoded system configuration backup files. This is only possible through network access to the affected system, and successful exploitation requires no system privileges.

Affected products

7
  • cpe:2.3:a:siemens:sinema_server:*:*:*:*:*:*:*:*+ 5 more
    • cpe:2.3:a:siemens:sinema_server:*:*:*:*:*:*:*:*range: <14.0
    • cpe:2.3:a:siemens:sinema_server:14.0:-:*:*:*:*:*:*
    • cpe:2.3:a:siemens:sinema_server:14.0:sp1:*:*:*:*:*:*
    • cpe:2.3:a:siemens:sinema_server:14.0:sp2:*:*:*:*:*:*
    • (no CPE)range: < V14 SP3
    • (no CPE)range: All versions < V14 SP3
  • Range: < V14 SP3

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.