Description
This vulnerability could allow an attacker to hijack a session while a user is logged in the configuration web page. This vulnerability was discovered by a security researcher in B426 and found during internal product tests in B426-CN/B429-CN, and B426-M and has been fixed already starting from version 3.08 on, which was released on June 2019.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-10771 | This vulnerability could allow an attacker to hijack a session while a user is logged in the configuration web page. This vulnerability was discovered by a security researcher in B426 and found during internal product tests in B426-CN/B429-CN, and B426-M and has been fixed already starting from version 3.08 on, which was released on June 2019. |
References
History
No history.
Status: PUBLISHED
Assigner: bosch
Published:
Updated: 2024-09-16T21:57:38.685Z
Reserved: 2021-01-12T00:00:00.000Z
Link: CVE-2021-23845
No data.
Status : Modified
Published: 2021-06-18T14:15:07.907
Modified: 2024-11-21T05:51:55.950
Link: CVE-2021-23845
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD