VDB
CVE-2024-41904
CVE-2024-41904
PUBLISHED
CVSS 7.5 HIGH
A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V2.0). The affected application do not properly enforce restriction of excessive authentication attempts. This could allow an unauthenticated attacker to conduct brute force attacks against legitimate user credentials or keys.
EPSS 0.54% · 43.2th percentile
Risk Scores
CVSS 3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
EPSS Score
0.54%
43.2th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| siemens | sinec_traffic_analyzer | 0 |
| Siemens | SINEC Traffic Analyzer | 0 |
| siemens | sinec_traffic_analyzer | 0 |
Timeline
- Aug 13, 2024 CVE Published
- Aug 13, 2024 EPSS Score
- Aug 13, 2024 PoC Published
- Aug 16, 2024 CVE Updated
- Sep 3, 2024 EPSS Score
- Sep 25, 2024 EPSS Score
- Oct 4, 2024 Coalition ESS Score
- Oct 16, 2024 EPSS Score
- Nov 6, 2024 EPSS Score
- Nov 28, 2024 EPSS Score
- Dec 20, 2024 EPSS Score
- Jan 10, 2025 EPSS Score
References
- https://cert-portal.siemens.com/productcert/html/ssa-087301.html advisory
- https://cert-portal.siemens.com/productcert/html/ssa-357412.html advisory
- https://cert-portal.siemens.com/productcert/html/ssa-417547.html advisory
- https://cert-portal.siemens.com/productcert/html/ssa-068047.html advisory
- https://cert-portal.siemens.com/productcert/html/ssa-659443.html advisory
- https://cert-portal.siemens.com/productcert/html/ssa-921449.html advisory
- https://cert-portal.siemens.com/productcert/html/ssa-856475.html advisory
- https://cert-portal.siemens.com/productcert/html/ssa-784301.html advisory
- https://cert-portal.siemens.com/productcert/html/ssa-716317.html url
- https://cert-portal.siemens.com/productcert/html/ssa-720392.html advisory
- https://nvd.nist.gov/vuln/detail/CVE-2024-41904 advisory