CVE-2024-41904 PUBLISHED CVSS 7.5 HIGH

A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V2.0). The affected application do not properly enforce restriction of excessive authentication attempts. This could allow an unauthenticated attacker to conduct brute force attacks against legitimate user credentials or keys.

EPSS 0.59% · 69.1th percentile

Risk Scores

CVSS v3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
EPSS Score
0.59%
69.1th percentile

Affected Products

VendorProductVersions
siemenssinec_traffic_analyzer0
SiemensSINEC Traffic Analyzer0
siemenssinec_traffic_analyzer0

Timeline

References

Open in Interactive Console →