siemens sinema-remote-connect-server CVE-2022-27220 is a vulnerability in Siemens Sinema Remote Connect Server
Published on June 14, 2022

A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.0 SP2). Affected application is missing general HTTP security headers in the web server configured on port 6220. This could aid attackers by making the servers more prone to clickjacking, channel downgrade attacks and other similar client-based attack vectors.

NVD

Weakness Type

Improperly Implemented Security Check for Standard

The software does not implement or incorrectly implements one or more security-relevant checks as specified by the design of a standardized algorithm, protocol, or technique.


Products Associated with CVE-2022-27220

Want to know whenever a new CVE is published for Siemens Sinema Remote Connect Server? stack.watch will email you.

 

Affected Versions

Siemens SINEMA Remote Connect Server Version All versions < V3.0 SP2 is affected by CVE-2022-27220

Exploit Probability

EPSS
0.18%
Percentile
39.17%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.