Siemens SINEC Security Monitor Denial-of-Service Vulnerability

Vulnerability

A denial-of-service vulnerability has been identified in Siemens SINEC Security Monitor, affecting all versions prior to 4.10.0. The issue arises from the application's failure to properly validate date parameters in the report generation feature. This lack of input validation could enable an authenticated, lowly privileged attacker to disrupt the report functionality.

Impact

Exploitation of this vulnerability leads to a denial-of-service condition in the report generation feature.

Remediation

Users are advised to update SINEC Security Monitor to version 4.10.0 or later. Additional guidance can be found on the Siemens support website.

Added: Dec 9, 2025, 8:07 PM
Updated: Dec 9, 2025, 8:07 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
3.3
remediation
7.7
relevance
1.4
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.