An incorrect authentication vulnerability has been found in Socomec Net Vision affecting version 7.20. This vulnerability allows an attacker to perform a brute force attack on the application and recover a valid session, because the application uses a five-digit integer value.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: INCIBE

Published: 2024-05-07T11:31:41.772Z

Updated: 2024-06-04T17:55:18.951Z

Reserved: 2024-05-07T09:41:32.272Z


Link: CVE-2024-4601

JSON object: View

cve-icon NVD Information

Status : Awaiting Analysis

Published: 2024-05-07T12:15:10.880

Modified: 2024-05-07T13:39:32.710


Link: CVE-2024-4601

JSON object: View

cve-icon Redhat Information

No data.

CWE