High severity7.6NVD Advisory· Published Jul 9, 2024· Updated Jun 17, 2026
CVE-2024-39867
CVE-2024-39867
Description
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). Affected devices do not properly validate the authentication when performing certain actions in the web interface allowing an unauthenticated attacker to access and edit device configuration information of devices for which they have no privileges.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5cpe:2.3:a:siemens:sinema_remote_connect_server:*:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:siemens:sinema_remote_connect_server:*:*:*:*:*:*:*:*range: <3.2
- cpe:2.3:a:siemens:sinema_remote_connect_server:3.2:-:*:*:*:*:*:*
- cpe:2.3:a:siemens:sinema_remote_connect_server:3.2:hf1:*:*:*:*:*:*
- (no CPE)range: <V3.2 SP1
- (no CPE)range: 0
Patches
Vulnerability mechanics
References
1- cert-portal.siemens.com/productcert/html/ssa-381581.htmlnvdPatchVendor Advisory
News mentions
0No linked articles in our index yet.