Vulnerability CVE-2024-36266


Published: 2024-06-11

Description:
A vulnerability has been identified in PowerSys (All versions < V3.11). The affected application insufficiently protects responses to authentication requests. This could allow a local attacker to bypass authentication, thereby gaining administrative privileges for the managed remote devices.

Type:

CWE-287

(Improper Authentication)

 References:
https://cert-portal.siemens.com/productcert/html/ssa-024584.html

Copyright 2024, cxsecurity.com

 

Back to Top