Show filters
9 Total Results
Displaying 1-9 of 9
Sort by:
Attacker Value
Unknown

CVE-2022-27220

Disclosure Date: June 14, 2022 (last updated October 07, 2023)
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.0 SP2). Affected application is missing general HTTP security headers in the web server configured on port 6220. This could aid attackers by making the servers more prone to clickjacking, channel downgrade attacks and other similar client-based attack vectors.
Attacker Value
Unknown

CVE-2022-27219

Disclosure Date: June 14, 2022 (last updated October 07, 2023)
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.0 SP2). Affected application is missing general HTTP security headers in the web server configured on port 443. This could aid attackers by making the servers more prone to clickjacking, channel downgrade attacks and other similar client-based attack vectors.
Attacker Value
Unknown

CVE-2021-37190

Disclosure Date: September 14, 2021 (last updated November 28, 2024)
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.0 SP2). The affected software has an information disclosure vulnerability that could allow an attacker to retrieve VPN connection for a known user.
Attacker Value
Unknown

CVE-2021-37193

Disclosure Date: September 14, 2021 (last updated November 28, 2024)
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.0 SP2). An unauthenticated attacker in the same network of the affected system could manipulate certain parameters and set a valid user of the affected software as invalid (or vice-versa).
Attacker Value
Unknown

CVE-2021-37191

Disclosure Date: September 14, 2021 (last updated November 28, 2024)
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.0 SP2). An unauthenticated attacker in the same network of the affected system could brute force the usernames from the affected software.
Attacker Value
Unknown

CVE-2021-37183

Disclosure Date: September 14, 2021 (last updated November 28, 2024)
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.0 SP2). The affected software allows sending send-to-sleep notifications to the managed devices. An unauthenticated attacker in the same network of the affected system can abuse these notifications to cause a Denial-of-Service condition in the managed devices.
Attacker Value
Unknown

CVE-2021-37192

Disclosure Date: September 14, 2021 (last updated November 28, 2024)
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.0 SP2). The affected software has an information disclosure vulnerability that could allow an attacker to retrieve a list of network devices a known user can manage.
Attacker Value
Unknown

CVE-2021-37177

Disclosure Date: September 14, 2021 (last updated November 28, 2024)
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.0 SP2). The status provided by the syslog clients managed by the affected software can be manipulated by an unauthenticated attacker in the same network of the affected system.
Attacker Value
Unknown

CVE-2021-20093

Disclosure Date: June 16, 2021 (last updated November 28, 2024)
A buffer over-read vulnerability exists in Wibu-Systems CodeMeter versions < 7.21a. An unauthenticated remote attacker can exploit this issue to disclose heap memory contents or crash the CodeMeter Runtime Server.