CVE-2024-22045
A vulnerability has been identified in SINEMA Remote Connect Client (All versions < V3.1 SP1). The product places sensitive information into files or directories that are accessible to actors who are allowed to have access to the files, but not to the sensitive information. This information is also available via the web interface of the product.
Scoring
- Severity
- HIGH
- CVSS base score
- 7.6
- CVSS vector
- CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:L/A:N/E:P/RL:O/RC:C
- EPSS probability
- 0.43%
- CWE
- CWE-538
- Published
- 2024-03-12
- Last modified
- 2026-03-13
Affected products
- Siemens SINEMA Remote Connect Client
Weakness type
Related vulnerabilities
- CVE-2026-80175 — Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to...
- CVE-2026-69507 — Microsoft Windows Search Component Information Disclosure Vulnerability
- CVE-2026-67361 — Joomla Extension - j2commerce.com - Unauthenticated file upload with missing directory protection in J2Store 1.0.0-3.3.20, 4.0.0-4.0.20, 4.1.0-4.1.5
- CVE-2026-19229 — SourceCodester Online Clothing Store Dreamweaver Metadata Files _notes file information disclosure
- CVE-2026-12762 — Insertion of Sensitive Information into Externally-Accessible File in IBM Business Automation Insights
- CVE-2026-15574 — Vllm-orchestrator-gateway: vllm-orchestrator-gateway: authorization header and full chat payloads logged at hard-coded debug default
- CVE-2025-36372 — IBM® Db2® could disclose sensitive information to an authenticated user from the monitoring and event tables
- CVE-2026-50099 — Naxclow IoT Platform Insertion of sensitive information into Externally-Accessible file or directory