Description
A vulnerability has been found in multiple revisions of Emerson Rosemount X-STREAM Gas Analyzer. The affected applications utilize persistent cookies where the session cookie attribute is not properly invalidated, allowing an attacker to intercept the cookies and gain access to sensitive information.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-14217 | A vulnerability has been found in multiple revisions of Emerson Rosemount X-STREAM Gas Analyzer. The affected applications utilize persistent cookies where the session cookie attribute is not properly invalidated, allowing an attacker to intercept the cookies and gain access to sensitive information. |
References
| Link | Providers |
|---|---|
| https://us-cert.cisa.gov/ics/advisories/icsa-21-138-01 |
|
History
No history.
Subscriptions
Emerson
Subscribe
X-stream Enhanced Xefd
Subscribe
X-stream Enhanced Xefd Firmware
Subscribe
X-stream Enhanced Xegk
Subscribe
X-stream Enhanced Xegk Firmware
Subscribe
X-stream Enhanced Xegp
Subscribe
X-stream Enhanced Xegp Firmware
Subscribe
X-stream Enhanced Xexf
Subscribe
X-stream Enhanced Xexf Firmware
Subscribe
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2024-08-03T20:48:17.198Z
Reserved: 2021-02-19T00:00:00.000Z
Link: CVE-2021-27463
No data.
Status : Modified
Published: 2021-05-20T12:15:08.197
Modified: 2024-11-21T05:58:02.533
Link: CVE-2021-27463
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD