CVE-2021-44522
14.12.2021, 12:15
A vulnerability has been identified in SiPass integrated V2.76 (All versions), SiPass integrated V2.80 (All versions), SiPass integrated V2.85 (All versions), Siveillance Identity V1.5 (All versions), Siveillance Identity V1.6 (All versions < V1.6.284.0). Affected applications insufficiently limit the access to the internal message broker system. This could allow an unauthenticated remote attacker to subscribe to arbitrary message queues.Enginsight
Vendor | Product | Version |
---|---|---|
siemens | sipass_integrated | 2.76 |
siemens | sipass_integrated | 2.76:sp1 |
siemens | sipass_integrated | 2.80 |
siemens | sipass_integrated | 2.85 |
siemens | siveillance_identity | 1.6 ≤ 𝑥 ≤ 1.6.280.0 |
siemens | siveillance_identity | 1.5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration