An authentication bypass vulnerability exists in the OAS Engine authentication functionality of Open Automation Software OAS Platform v18.00.0072. A specially crafted network sniffing can lead to decryption of sensitive information. An attacker can sniff network traffic to trigger this vulnerability.
References
Link Resource
https://talosintelligence.com/vulnerability_reports/TALOS-2023-1776 Exploit Technical Description Third Party Advisory
https://www.talosintelligence.com/vulnerability_reports/TALOS-2023-1776 Exploit Technical Description Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: talos

Published: 2023-09-05T16:15:02.295Z

Updated: 2023-09-05T16:15:02.295Z

Reserved: 2023-06-13T17:22:56.076Z


Link: CVE-2023-34353

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-09-05T17:15:08.963

Modified: 2023-09-08T17:34:45.550


Link: CVE-2023-34353

JSON object: View

cve-icon Redhat Information

No data.

CWE