Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). The affected application allows authenticated, low privilege users with the 'Manage own remote connections' permission to retrieve details about other users and group memberships.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Vulnerability Type
关键资源的不正确权限授予
Vulnerability Title
Siemens SINEMA Remote Connect Server 安全漏洞
Vulnerability Description
Siemens SINEMA Remote Connect Server是德国西门子(Siemens)公司的一套远程网络管理平台。该平台主要用于远程访问、维护、控制和诊断底层网络。 Siemens SINEMA Remote Connect Server V3.2 SP1 版本之前存在安全漏洞,该漏洞源于受影响的应用程序允许具有 Manage own remote connections 权限的经过身份验证的低权限用户检索有关其他用户和组成员身份的详细信息。
CVSS Information
N/A
Vulnerability Type
N/A