A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions). The affected application uses a monitoring interface that is not operating in a strictly passive mode. This could allow an attacker to interact with the interface, leading to man-in-the-middle attacks.
                
            Metrics
Affected Vendors & Products
References
        History
                    Wed, 20 Aug 2025 21:00:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| CPEs | cpe:2.3:a:siemens:sinec_traffic_analyzer:*:*:*:*:*:*:*:* | 
Tue, 12 Aug 2025 20:00:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | Siemens Siemens sinec Traffic Analyzer | |
| Vendors & Products | Siemens Siemens sinec Traffic Analyzer | 
Tue, 12 Aug 2025 14:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | ssvc 
 | 
Tue, 12 Aug 2025 11:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions). The affected application uses a monitoring interface that is not operating in a strictly passive mode. This could allow an attacker to interact with the interface, leading to man-in-the-middle attacks. | |
| Weaknesses | CWE-300 | |
| References |  | |
| Metrics | cvssV3_1 
 
 | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: siemens
Published: 2025-08-12T11:17:21.183Z
Updated: 2025-08-12T13:34:39.718Z
Reserved: 2025-04-16T08:39:30.033Z
Link: CVE-2025-40770
 Vulnrichment
                        Vulnrichment
                    Updated: 2025-08-12T13:34:34.710Z
 NVD
                        NVD
                    Status : Analyzed
Published: 2025-08-12T12:15:38.047
Modified: 2025-08-20T20:56:50.977
Link: CVE-2025-40770
 Redhat
                        Redhat
                    No data.