An incorrect authentication vulnerability has been found in Socomec Net Vision affecting version 7.20. This vulnerability allows an attacker to perform a brute force attack on the application and recover a valid session, because the application uses a five-digit integer value.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: INCIBE
Published: 2024-05-07T11:31:41.772Z
Updated: 2024-06-04T17:55:18.951Z
Reserved: 2024-05-07T09:41:32.272Z
Link: CVE-2024-4601
JSON object: View
NVD Information
Status : Awaiting Analysis
Published: 2024-05-07T12:15:10.880
Modified: 2024-05-07T13:39:32.710
Link: CVE-2024-4601
JSON object: View
Redhat Information
No data.
CWE