CVE-2024-41979

A vulnerability has been identified in SmartClient modules Opcenter QL Home (SC) (All versions >= V13.2 < V2506), SOA Audit (All versions >= V13.2 < V2506), SOA Cockpit (All versions >= V13.2 < V2506). The affected application does not enforce mandatory authorization on some functionality level at server side. This could allow an authenticated attacker to gain complete access of the application.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:siemens:opcenter_quality:13.2:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-08-12 12:15

Updated : 2025-10-23 13:46


NVD link : CVE-2024-41979

Mitre link : CVE-2024-41979

CVE.ORG link : CVE-2024-41979


JSON object : View

Products Affected

siemens

  • opcenter_quality
CWE
CWE-863

Incorrect Authorization