Cross-site request forgery (CSRF) vulnerability on KMC Controls BAC-5051E devices with firmware before E0.2.0.2 allows remote attackers to hijack the authentication of unspecified victims for requests that disclose the contents of a configuration file.
References
Link Resource
https://ics-cert.us-cert.gov/advisories/ICSA-16-126-01 Third Party Advisory US Government Resource
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: icscert

Published: 2016-06-10T01:00:00

Updated: 2016-06-10T01:57:01

Reserved: 2016-05-05T00:00:00


Link: CVE-2016-4494

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2016-06-10T01:59:08.927

Modified: 2016-06-10T21:55:28.253


Link: CVE-2016-4494

JSON object: View

cve-icon Redhat Information

No data.

CWE