Medium severity4.3NVD Advisory· Published Dec 9, 2025· Updated Jun 17, 2026
CVE-2025-40819
CVE-2025-40819
Description
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP4). Affected applications do not properly validate license restrictions against the database, allowing direct modification of the system_ticketinfo table to bypass license limitations without proper enforcement checks. This could allow with database access to circumvent licensing restrictions by directly modifying database values and potentially enabling unauthorized use beyond the permitted scope.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6cpe:2.3:a:siemens:sinema_remote_connect_server:*:*:*:*:*:*:*:*+ 5 more
- cpe:2.3:a:siemens:sinema_remote_connect_server:*:*:*:*:*:*:*:*range: <3.2
- cpe:2.3:a:siemens:sinema_remote_connect_server:3.2:sp1:*:*:*:*:*:*
- cpe:2.3:a:siemens:sinema_remote_connect_server:3.2:sp2:*:*:*:*:*:*
- cpe:2.3:a:siemens:sinema_remote_connect_server:3.2:sp3:*:*:*:*:*:*
- (no CPE)range: <V3.2 SP4
- (no CPE)range: 0
Patches
Vulnerability mechanics
References
1- cert-portal.siemens.com/productcert/html/ssa-626856.htmlnvdVendor Advisory
News mentions
0No linked articles in our index yet.