Cross-site request forgery (CSRF) vulnerability on KMC Controls BAC-5051E devices with firmware before E0.2.0.2 allows remote attackers to hijack the authentication of unspecified victims for requests that disclose the contents of a configuration file.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://ics-cert.us-cert.gov/advisories/ICSA-16-126-01 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: icscert
Published: 2016-06-10T01:00:00
Updated: 2024-08-06T00:32:25.448Z
Reserved: 2016-05-05T00:00:00
Link: CVE-2016-4494
Vulnrichment
No data.
NVD
Status : Modified
Published: 2016-06-10T01:59:08.927
Modified: 2024-11-21T02:52:20.670
Link: CVE-2016-4494
Redhat
No data.