CVE-2024-36266
11.06.2024, 12:15
A vulnerability has been identified in PowerSys (All versions < V3.11). The affected application insufficiently protects responses to authentication requests. This could allow a local attacker to bypass authentication, thereby gaining administrative privileges for the managed remote devices.Enginsight
Vendor | Product | Version |
---|---|---|
siemens | powersys | 𝑥 < 3.11 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration