Описание
Improper Authentication vulnerability in the cookie parameter of ZIV AUTOMATION 4CCT-EA6-334126BF allows a local attacker to perform modifications in several parameters of the affected device as an authenticated user.
Уязвимые конфигурации
Конфигурация 1
Одновременно
cpe:2.3:o:zivautomation:4cct-ea6-334126bf_firmware:3.23.77.8.33251:*:*:*:*:*:*:*
cpe:2.3:h:zivautomation:4cct-ea6-334126bf:-:*:*:*:*:*:*:*
EPSS
Процентиль: 21%
0.00068
Низкий
8 High
CVSS3
6.5 Medium
CVSS3
3.3 Low
CVSS2
Дефекты
CWE-287
CWE-287
Связанные уязвимости
github
больше 3 лет назад
Improper Authentication vulnerability in the cookie parameter of ZIV AUTOMATION 4CCT-EA6-334126BF allows a local attacker to perform modifications in several parameters of the affected device as an authenticated user.
EPSS
Процентиль: 21%
0.00068
Низкий
8 High
CVSS3
6.5 Medium
CVSS3
3.3 Low
CVSS2
Дефекты
CWE-287
CWE-287