Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5v93-w7mf-hc4q

Опубликовано: 10 сент. 2024
Источник: github
Github: Не прошло ревью
CVSS4: 5.3
CVSS3: 4.3

Описание

A vulnerability has been identified in SINEMA Remote Connect Client (All versions < V3.2 SP2). The affected application does not expire the user session on reboot without logout. This could allow an attacker to bypass Multi-Factor Authentication.

A vulnerability has been identified in SINEMA Remote Connect Client (All versions < V3.2 SP2). The affected application does not expire the user session on reboot without logout. This could allow an attacker to bypass Multi-Factor Authentication.

EPSS

Процентиль: 14%
0.00047
Низкий

5.3 Medium

CVSS4

4.3 Medium

CVSS3

Дефекты

CWE-613

Связанные уязвимости

CVSS3: 4.3
nvd
больше 1 года назад

A vulnerability has been identified in SINEMA Remote Connect Client (All versions < V3.2 SP2). The affected application does not expire the user session on reboot without logout. This could allow an attacker to bypass Multi-Factor Authentication.

CVSS3: 4.3
fstec
больше 1 года назад

Уязвимость алгоритма TOTP (Time-based One-Time Password) клиента VPN-сервиса SINEMA Remote Connect, позволяющая нарушителю обойти процедуру аутентификации

EPSS

Процентиль: 14%
0.00047
Низкий

5.3 Medium

CVSS4

4.3 Medium

CVSS3

Дефекты

CWE-613