CVE 3.3 LOW

CVE-2025-40818_CVE-2025-40818

3.3 / 10
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

Description

A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP4). Affected applications contain private SSL/TLS keys on the server that are not properly protected allowing any user with server access to read these keys. This could allow an authenticated attacker to impersonate the server potentially enabling man-in-the-middle, traffic decryption or unauthorized access to services that trust these certificates.

Basic Information

ID CVE-2025-40818
Source siemens
Published Dec 9, 2025 at 10:44

Affected Product

Vendor Siemens
Product SINEMA Remote Connect Server
Affected Versions Siemens SINEMA Remote Connect Server 0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.