Siemens Teamcenter
cpe:2.3:a:siemens:teamcenter:*:*:*:*:*:*:*
- >= 14.1, < 14.2
- >= 14.2, < 14.3
- >= 14.3, < 2312
- >= 2312, < 2406
- >= 2406, < 2412
An open redirect vulnerability has been identified in the SSO login service of Siemens Teamcenter versions 14.1, 14.2, 14.3, V2312, V2406, and V2412. The vulnerability allows an attacker to redirect users to an external URL of their choice, potentially leading to the theft of session data. Exploitation requires the user to click on a crafted link.
Exploitation of this vulnerability could result in unauthorized redirection of users, allowing attackers to steal session data by intercepting valid session information.
Siemens has released hot fixes for all affected Teamcenter versions. Users are advised to apply these hot fixes as described in the Software Field Bulletin PL8837639.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.