Description
An authentication bypass vulnerability exists in the OAS Engine authentication functionality of Open Automation Software OAS Platform v18.00.0072. A specially crafted network sniffing can lead to decryption of sensitive information. An attacker can sniff network traffic to trigger this vulnerability.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-38433 | An authentication bypass vulnerability exists in the OAS Engine authentication functionality of Open Automation Software OAS Platform v18.00.0072. A specially crafted network sniffing can lead to decryption of sensitive information. An attacker can sniff network traffic to trigger this vulnerability. |
References
History
Thu, 26 Sep 2024 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: talos
Published:
Updated: 2025-02-13T16:55:30.194Z
Reserved: 2023-06-13T17:22:56.076Z
Link: CVE-2023-34353
Updated: 2024-08-02T16:10:06.405Z
Status : Modified
Published: 2023-09-05T17:15:08.963
Modified: 2024-11-21T08:07:04.850
Link: CVE-2023-34353
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD