CVE-2024-22040 | Siemens Cerberus PRO EN Engineering Tool Network Communication Library out-of-bounds (ssa-225840 / EUVD-2024-19643)
A vulnerability was found in Siemens Cerberus PRO EN Engineering Tool, Cerberus PRO EN Fire Panel FC72x, Cerberus PRO EN X200 Cloud Distribution, Cerberus PRO EN X300 Cloud Distribution, Sinteso FS20 EN Engineering Tool, Sinteso FS20 EN Fire Panel FC20, Sinteso FS20 EN X200 Cloud Distribution, Sinteso FS20 EN X300 Cloud Distribution and Sinteso Mobile. It has been declared as problematic. The impacted element is an unknown function of the component Network Communication Library. Such manipulation leads to out-of-bounds read.
This vulnerability is uniquely identified as CVE-2024-22040. The attack can be launched remotely. No exploit exists.
It is recommended to upgrade the affected component.