Vulnerability Details CVE-2024-32006
A vulnerability has been identified in SINEMA Remote Connect Client (All versions < V3.2 SP2). The affected application does not expire the user session on reboot without logout. This could allow an attacker to bypass Multi-Factor Authentication.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 31.8%
CVSS Severity
CVSS v3 Score 4.3
Products affected by CVE-2024-32006
-
cpe:2.3:a:siemens:sinema_remote_connect_client:-
-
cpe:2.3:a:siemens:sinema_remote_connect_client:1.0
-
cpe:2.3:a:siemens:sinema_remote_connect_client:1.3
-
cpe:2.3:a:siemens:sinema_remote_connect_client:2.0
-
cpe:2.3:a:siemens:sinema_remote_connect_client:3.1
-
cpe:2.3:a:siemens:sinema_remote_connect_client:3.2