CVE-2024-39875: Siemens Sinema Remote Connect Server

Medium severity, CVSS 4.3. EPSS: 0.3% chance of exploitation in the next 30 days.

A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). The affected application allows authenticated, low privilege users with the 'Manage own remote connections' permission to retrieve details about other users and group memberships.

Affected products

  • Siemens Sinema Remote Connect Server: before 3.2 (fixed in 3.2); version 3.2 only

Published 2024-07-09. Last modified 2026-06-17.