4.3
/ 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Description
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP4). Affected applications do not properly validate license restrictions against the database, allowing direct modification of the system_ticketinfo table to bypass license limitations without proper enforcement checks. This could allow with database access to circumvent licensing restrictions by directly modifying database values and potentially enabling unauthorized use beyond the permitted scope.
Basic Information
ID
CVE-2025-40819
Source
siemens
Published
Dec 9, 2025 at 10:44
Affected Product
Vendor
Siemens
Product
SINEMA Remote Connect Server
Affected Versions
Siemens SINEMA Remote Connect Server 0