#VU64409 Improperly implemented security check for standard in SINEMA Remote Connect Server - CVE-2022-27219
Published: June 15, 2022
SINEMA Remote Connect Server
Siemens
Description
The vulnerability allows a remote attacker to compromise the target system.
The vulnerability exists due to the the affected application is missing general HTTP security headers in the web server. A remote attacker can make the servers more prone to clickjacking, channel downgrade attacks and other similar client-based attack vectors.