CVE-2024-52285: Siemens Sipass Integrated AC5102 Acc-g2

Medium severity, CVSS 5.3. EPSS: 0.5% chance of exploitation in the next 30 days.

A vulnerability has been identified in SiPass integrated AC5102 (ACC-G2) (All versions < V6.4.8), SiPass integrated ACC-AP (All versions < V6.4.8). Affected devices expose several MQTT URLs without authentication. This could allow an unauthenticated remote attacker to access sensitive data.

Affected products

  • Siemens Sipass Integrated AC5102 Acc-g2: before V6.4.8 (fixed in V6.4.8)
  • Siemens Sipass Integrated Acc-Ap: before V6.4.8 (fixed in V6.4.8)

Published 2025-03-11. Last modified 2026-06-17.