CVE-2022-32259

A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.1). The system images for installation or update of the affected application contain unit test scripts with sensitive information. An attacker could gain information about testing architecture and also tamper with test configuration.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:siemens:sinema_remote_connect_server:*:*:*:*:*:*:*:*

History

24 Jul 2023, 13:30

Type Values Removed Values Added
CWE CWE-863 NVD-CWE-Other

22 Jun 2022, 19:10

Type Values Removed Values Added
First Time Siemens sinema Remote Connect Server
Siemens
CPE cpe:2.3:a:siemens:sinema_remote_connect_server:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : 6.4
v3 : 6.5
CWE CWE-863
References (MISC) https://cert-portal.siemens.com/productcert/pdf/ssa-484086.pdf - (MISC) https://cert-portal.siemens.com/productcert/pdf/ssa-484086.pdf - Patch, Vendor Advisory

14 Jun 2022, 10:15

Type Values Removed Values Added
New CVE

Information

Published : 2022-06-14 10:15

Updated : 2023-12-10 14:22


NVD link : CVE-2022-32259

Mitre link : CVE-2022-32259

CVE.ORG link : CVE-2022-32259


JSON object : View

Products Affected

siemens

  • sinema_remote_connect_server
CWE
NVD-CWE-Other CWE-1244

Improper Access to Sensitive Information Using Debug and Test Interfaces