Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-41681


A vulnerability has been identified in Location Intelligence family (All versions < V4.4). The web server of affected products is configured to support weak ciphers by default. This could allow an unauthenticated attacker in an on-path position to to read and modify any data passed over the connection between legitimate clients and the affected device.


Published

2024-08-13T08:15:11.847

Last Modified

2024-08-14T18:37:06.540

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 6.7 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-326

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application siemens location_intelligence < 4.4 Yes

References