A vulnerability has been identified in PowerSys (All versions < V3.11). The affected application insufficiently protects responses to authentication requests. This could allow a local attacker to bypass authentication, thereby gaining administrative privileges for the managed remote devices.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: siemens

Published: 2024-06-11T11:15:59.201Z

Updated: 2024-06-11T14:20:59.711Z

Reserved: 2024-05-22T15:42:14.849Z


Link: CVE-2024-36266

JSON object: View

cve-icon NVD Information

Status : Awaiting Analysis

Published: 2024-06-11T12:15:18.657

Modified: 2024-06-11T13:54:12.057


Link: CVE-2024-36266

JSON object: View

cve-icon Redhat Information

No data.

CWE