# CVE-2024-41906

## Summary

- **CVE ID:** CVE-2024-41906
- **Severity:** MEDIUM
- **CVSS Score:** 6.3 (CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:N/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N)
- **CWE:** CWE-524
- **Published:** Aug 13, 2024
- **Last Modified:** Mar 13, 2026

## Description

A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V2.0). The affected application does not properly handle cacheable HTTP responses in the web service. This could allow an attacker to read and modify data stored in the local cache.

## Affected Products

- Siemens — SINEC Traffic Analyzer (0)

## References

- [CNA](https://cert-portal.siemens.com/productcert/html/ssa-716317.html)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.23%
- **EPSS Percentile:** 14.2

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-10._