Improper Authentication vulnerability in the cookie parameter of Circutor SGE-PLC1000 firmware version 0.9.2b allows an attacker to perform operations as an authenticated user. In order to exploit this vulnerability, the attacker must be within the network where the device affected is located.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-20516 | Improper Authentication vulnerability in the cookie parameter of Circutor SGE-PLC1000 firmware version 0.9.2b allows an attacker to perform operations as an authenticated user. In order to exploit this vulnerability, the attacker must be within the network where the device affected is located. |
Fixes
Solution
This issue can be solved through a firmware upgrade that has already been released by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2024-09-16T20:01:18.942Z
Reserved: 2021-06-04T00:00:00
Link: CVE-2021-33842
No data.
Status : Modified
Published: 2021-06-09T12:15:07.957
Modified: 2024-11-21T06:09:40.603
Link: CVE-2021-33842
No data.
OpenCVE Enrichment
No data.
EUVD