CVE-2025-32837 | Siemens TeleControl Server Basic 3.1.2.1 GetActiveConnectionVariables sql injection (ssa-443402)
A vulnerability labeled as critical has been found in Siemens TeleControl Server Basic 3.1.2.1. Affected is the function GetActiveConnectionVariables. The manipulation results in sql injection.
This vulnerability was named CVE-2025-32837. The attack may be performed from a remote location. There is no available exploit.
The affected component should be upgraded.