CVE-2024-31853 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

A vulnerability has been identified in SICAM TOOLBOX II (All versions < V07.11). During establishment of a https connection to the TLS server of a managed devic…
High CVSS: 7.7

CVE-2024-31853

A vulnerability has been identified in SICAM TOOLBOX II (All versions < V07.11). During establishment of a https connection to the TLS server of a managed device, the affected application doesn't check the extended key usage attribute of that device's certificate.
This could allow an attacker to execute an on-path network (MitM) attack.
Vendor
Siemens
Product
Sicam Toolbox Ii
CWE
CWE-295
Yayın Tarihi
2025-07-08 11:15:23
Güncelleme
2025-08-20 16:19:01
Source Identifier
productcert@siemens.com
KEV Date Added
-

Kategoriler

Referanslar