CVE-2025-40773
A vulnerability has been identified in SiPass integrated (All versions < V3.0). Affected server applications contains a broken access control vulnerability. The authorization mechanism lacks sufficient server-side checks, allowing an attacker to execute a specific API request.
Successful exploitation allows an attacker to potentially manipulate data belonging to other users.
Successful exploitation allows an attacker to potentially manipulate data belonging to other users.
Vendor
Product
CWE
Yayın Tarihi
2025-10-14 10:15:38
Güncelleme
2025-10-16 15:01:12
Source Identifier
productcert@siemens.com
KEV Date Added
-