A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.1). An error message pop up window in the web interface of the affected application does not prevent injection of JavaScript code.
This could allow attackers to perform reflected cross-site scripting (XSS) attacks.
Metrics
Affected Vendors & Products
References
History
Wed, 25 Feb 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:siemens:sinema_remote_connect_server:3.1:*:*:*:*:*:*:* | |
| Metrics |
ssvc
|
Fri, 11 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Status: PUBLISHED
Assigner: siemens
Published: 2022-06-14T09:21:45.000Z
Updated: 2024-08-03T06:10:58.431Z
Reserved: 2022-04-11T00:00:00.000Z
Link: CVE-2022-29034
Updated: 2024-08-03T06:10:58.431Z
Status : Modified
Published: 2022-06-14T10:15:20.207
Modified: 2024-11-21T06:58:22.713
Link: CVE-2022-29034
No data.