CVE-2024-23816
Published: Feb 13, 2024
Modified: May 9, 2025
CVSS v3.1
9.8
Description
A vulnerability has been identified in Location Intelligence Perpetual Large (9DE5110-8CA13-1AX0) (All versions < V4.3), Location Intelligence Perpetual Medium (9DE5110-8CA12-1AX0) (All versions < V4.3), Location Intelligence Perpetual Non-Prod (9DE5110-8CA10-1AX0) (All versions < V4.3), Location Intelligence Perpetual Small (9DE5110-8CA11-1AX0) (All versions < V4.3), Location Intelligence SUS Large (9DE5110-8CA13-1BX0) (All versions < V4.3), Location Intelligence SUS Medium (9DE5110-8CA12-1BX0) (All versions < V4.3), Location Intelligence SUS Non-Prod (9DE5110-8CA10-1BX0) (All versions < V4.3), Location Intelligence SUS Small (9DE5110-8CA11-1BX0) (All versions < V4.3). Affected products use a hard-coded secret value for the computation of a Keyed-Hash Message Authentication Code. This could allow an unauthenticated remote attacker to gain full administrative access to the application.
| Vendor | Product | Versions |
|---|---|---|
Siemens | Location Intelligence Perpetual Large | affected 0 - < V4.3 |
Siemens | Location Intelligence Perpetual Medium | affected 0 - < V4.3 |
Siemens | Location Intelligence Perpetual Non-Prod | affected 0 - < V4.3 |
Siemens | Location Intelligence Perpetual Small | affected 0 - < V4.3 |
Siemens | Location Intelligence SUS Large | affected 0 - < V4.3 |
Siemens | Location Intelligence SUS Medium | affected 0 - < V4.3 |
Siemens | Location Intelligence SUS Non-Prod | affected 0 - < V4.3 |
Siemens | Location Intelligence SUS Small | affected 0 - < V4.3 |
Weaknesses (CWE)
CVSS v3.1 Details
CVSS v3.1 Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:P/RL:O/RC:C
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now