A vulnerability has been found in multiple revisions of Emerson Rosemount X-STREAM Gas Analyzer. The affected applications utilize persistent cookies where the session cookie attribute is not properly invalidated, allowing an attacker to intercept the cookies and gain access to sensitive information.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://us-cert.cisa.gov/ics/advisories/icsa-21-138-01 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: icscert
Published: 2021-05-20T11:05:42
Updated: 2024-08-03T20:48:17.198Z
Reserved: 2021-02-19T00:00:00
Link: CVE-2021-27463
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2021-05-20T12:15:08.197
Modified: 2021-05-28T14:49:59.013
Link: CVE-2021-27463
Redhat
No data.