Back

MEDIUM

Improper Authentication vulnerability in Socomec Net Vision

Published May 7, 2024

Description

An incorrect authentication vulnerability has been found in Socomec Net Vision affecting version 7.20. This vulnerability allows an attacker to perform a brute force attack on the application and recover a valid session, because the application uses a five-digit integer value.

Affected products

Remediation

Vendor solution

Vulnerability fixed in the latest version of the affected product.

References (2)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner INCIBE
Published May 7, 2024
Updated Aug 1, 2024
Reserved May 7, 2024

CISA Vulnrichment

Updated May 7, 2024

NVD

Status Deferred
Modified Jun 17, 2026

Red Hat

No data

ENISA EUVD

Assigner INCIBE
Published May 7, 2024
Updated Aug 1, 2024

GitHub

No data