The vendor explicitly identifies these products as affected by this CVE.
- SINEC Security Monitor
- Summary
- The affected application does not properly validate user input to the ```ssmctl-client``` command. This could allow an authenticated, lowly privileged remote attacker to execute arbitrary code with root privileges on the underlying OS.
- Remediation
- Update to V4.9.0 or later version
