PT-2024-4575 · Unknown · Sinec Traffic Analyzer
Published
2024-06-11
·
Updated
2024-08-06
·
CVE-2024-35212
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:C/I:N/A:N |
Name of the Vulnerable Software and Affected Versions:
SINEC Traffic Analyzer versions prior to V1.2
Description:
The issue is related to insufficient input validation in the SINEC Traffic Analyzer application, which can allow a remote attacker to gain unauthorized access to protected information. This lack of input validation can enable an attacker to access database entries.
Recommendations:
For versions prior to V1.2, update to version V1.2 or later to resolve the issue. As a temporary workaround, consider restricting access to the database entries to minimize the risk of exploitation.
Fix
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Sinec Traffic Analyzer