CVE-2025-40773 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

A vulnerability has been identified in SiPass integrated (All versions < V3.0). Affected server applications contains a broken access control vulnerability. The…
Medium CVSS: 5.1

CVE-2025-40773

A vulnerability has been identified in SiPass integrated (All versions < V3.0). Affected server applications contains a broken access control vulnerability. The authorization mechanism lacks sufficient server-side checks, allowing an attacker to execute a specific API request.

Successful exploitation allows an attacker to potentially manipulate data belonging to other users.
Vendor
Siemens
Product
Sipass Integrated
CWE
CWE-639
Yayın Tarihi
2025-10-14 10:15:38
Güncelleme
2025-10-16 15:01:12
Source Identifier
productcert@siemens.com
KEV Date Added
-

Kategoriler

Referanslar