#VU56658 Modification of assumed-immutable data in SINEMA Remote Connect Server - CVE-2021-37177
Published: September 16, 2021
SINEMA Remote Connect Server
Siemens
Description
The vulnerability allows a remote attacker to bypass certain security restrictions.
The vulnerability exists due to application does not perform validation of the attacker-controlled data, assuming that data is valid and safe. A remote attacker on the local network can manipulate with the status provided by the syslog clients managed by the affected software.