siemens sinema-server CVE-2019-10941 is a vulnerability in Siemens Sinema Server
Published on September 14, 2021

A vulnerability has been identified in SINEMA Server (All versions < V14 SP3). Missing authentication for functionality that requires administrative user identity could allow an attacker to obtain encoded system configuration backup files. This is only possible through network access to the affected system, and successful exploitation requires no system privileges.

NVD

Weakness Type

Missing Authentication for Critical Function

The software does not perform any authentication for functionality that requires a provable user identity or consumes a significant amount of resources.


Products Associated with CVE-2019-10941

Want to know whenever a new CVE is published for Siemens Sinema Server? stack.watch will email you.

 

Affected Versions

Siemens SINEMA Server Version All versions < V14 SP3 is affected by CVE-2019-10941

Exploit Probability

EPSS
0.18%
Percentile
40.14%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.