This vulnerability could allow an attacker to hijack a session while a user is logged in the configuration web page. This vulnerability was discovered by a security researcher in B426 and found during internal product tests in B426-CN/B429-CN, and B426-M and has been fixed already starting from version 3.08 on, which was released on June 2019.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: bosch
Published: 2021-06-18T13:38:31.304203Z
Updated: 2024-09-16T21:57:38.685Z
Reserved: 2021-01-12T00:00:00
Link: CVE-2021-23845
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-06-18T14:15:07.907
Modified: 2024-11-21T05:51:55.950
Link: CVE-2021-23845
Redhat
No data.