SINEC Traffic Analyzer <V1.2 Input Validation Flaw Exposes DB
CVE-2024-35212 Published on June 11, 2024

A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V1.2). The affected application lacks input validation due to which an attacker can gain access to the Database entries.

NVD

Weakness Type

Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.


Products Associated with CVE-2024-35212

Want to know whenever a new CVE is published for Siemens Sinec Traffic Analyzer? stack.watch will email you.

 

Affected Versions

Siemens SINEC Traffic Analyzer: siemens sinec_traffic_analyzer:

Exploit Probability

EPSS
0.39%
Percentile
59.77%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.