CVE-2024-39876

A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). Affected applications do not properly handle log rotation. This could allow an unauthenticated remote attacker to cause a denial of service condition through resource exhaustion on the device.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:siemens:sinema_remote_connect_server:*:*:*:*:*:*:*:*
cpe:2.3:a:siemens:sinema_remote_connect_server:3.2:-:*:*:*:*:*:*

History

07 Aug 2024, 19:26

Type Values Removed Values Added
CPE cpe:2.3:a:siemens:sinema_remote_connect_server:3.2:-:*:*:*:*:*:*
cpe:2.3:a:siemens:sinema_remote_connect_server:*:*:*:*:*:*:*:*
First Time Siemens
Siemens sinema Remote Connect Server
Summary
  • (es) Se ha identificado una vulnerabilidad en SINEMA Remote Connect Server (todas las versiones &lt; V3.2 SP1). Las aplicaciones afectadas no manejan adecuadamente la rotación de registros. Esto podría permitir que un atacante remoto no autenticado provoque una condición de denegación de servicio mediante el agotamiento de los recursos del dispositivo.
References () https://cert-portal.siemens.com/productcert/html/ssa-381581.html - () https://cert-portal.siemens.com/productcert/html/ssa-381581.html - Vendor Advisory

09 Jul 2024, 12:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-07-09 12:15

Updated : 2024-08-07 19:26


NVD link : CVE-2024-39876

Mitre link : CVE-2024-39876

CVE.ORG link : CVE-2024-39876


JSON object : View

Products Affected

siemens

  • sinema_remote_connect_server
CWE
CWE-770

Allocation of Resources Without Limits or Throttling