CVE-2024-41906: Siemens Sinec Traffic Analyzer

Medium severity, CVSS 6.5. EPSS: 0.2% chance of exploitation in the next 30 days.

A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V2.0). The affected application does not properly handle cacheable HTTP responses in the web service. This could allow an attacker to read and modify data stored in the local cache.

Affected products

  • Siemens Sinec Traffic Analyzer: before 2.0 (fixed in 2.0)

Published 2024-08-13. Last modified 2026-06-17.