Vulnerabilities > CVE-2021-44522 - Exposure of Resource to Wrong Sphere vulnerability in Siemens Sipass Integrated and Siveillance Identity
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
NONE Availability impact
NONE Summary
A vulnerability has been identified in SiPass integrated V2.76 (All versions), SiPass integrated V2.80 (All versions), SiPass integrated V2.85 (All versions), Siveillance Identity V1.5 (All versions), Siveillance Identity V1.6 (All versions < V1.6.284.0). Affected applications insufficiently limit the access to the internal message broker system. This could allow an unauthenticated remote attacker to subscribe to arbitrary message queues.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 7 |