CVE-2024-41985
CVE-2024-41985
A vulnerability has been identified in SmartClient modules Opcenter QL Home (SC) (All versions >= V13.2 < V2506), SOA Audit (All versions >= V13.2 < V2506), SOA Cockpit (All versions >= V13.2 < V2506). The affected application does not expire the session without logout. This could allow an attacker to get unauthorized access if the session is left idle.
CVSS:4.0/AV:A/AC:H/AT:N/PR:N/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N
Produtos afetados
Siemens · SmartClient modules Opcenter QL Home (SC)Siemens · SOA AuditSiemens · SOA CockpitQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →