SiRcom SMART Alert (SiSA) allows unauthorized access to backend APIs. This allows an unauthenticated attacker to bypass the login screen using browser developer tools, gaining access to restricted parts of the application.
Metrics
Affected Vendors & Products
References
History
Tue, 25 Nov 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 25 Nov 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
Tue, 25 Nov 2025 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SiRcom SMART Alert (SiSA) allows unauthorized access to backend APIs. This allows an unauthenticated attacker to bypass the login screen using browser developer tools, gaining access to restricted parts of the application. | |
| Title | Missing Authentication for Critical Function in SiRcom SMART Alert (SiSA) | |
| Weaknesses | CWE-306 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: icscert
Published: 2025-11-25T17:36:24.451Z
Updated: 2025-11-25T20:21:13.361Z
Reserved: 2025-11-20T16:46:56.591Z
Link: CVE-2025-13483
Updated: 2025-11-25T20:21:10.146Z
Status : Awaiting Analysis
Published: 2025-11-25T18:15:49.780
Modified: 2025-11-25T22:16:16.690
Link: CVE-2025-13483
No data.