PT-2025-49840 · Siemens · Sinec Security Monitor

Published

2025-12-09

·

Updated

2025-12-09

·

CVE-2025-40831

CVSS v2.0

6.8

Medium

VectorAV:N/AC:L/Au:S/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions SINEC Security Monitor versions prior to 4.10.0
Description The application does not properly validate input for the date parameter used in report generation. A low-privileged, authenticated attacker could exploit this to cause a denial of service condition affecting the report functionality.
Recommendations Update to version 4.10.0 or later.

Fix

RCE

Weakness Enumeration

Related Identifiers

BDU:2025-15616
CVE-2025-40831

Affected Products

Sinec Security Monitor