Description
An authentication bypass vulnerability exists in the OAS Engine functionality of Open Automation Software OAS Platform v18.00.0072. A specially crafted series of network requests can lead to arbitrary authentication. An attacker can sniff network traffic to trigger this vulnerability.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-39036 | An authentication bypass vulnerability exists in the OAS Engine functionality of Open Automation Software OAS Platform v18.00.0072. A specially crafted series of network requests can lead to arbitrary authentication. An attacker can sniff network traffic to trigger this vulnerability. |
References
History
Thu, 26 Sep 2024 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: talos
Published:
Updated: 2025-02-13T16:55:42.910Z
Reserved: 2023-06-13T16:58:36.846Z
Link: CVE-2023-34998
Updated: 2024-08-02T16:17:04.223Z
Status : Modified
Published: 2023-09-05T17:15:09.153
Modified: 2024-11-21T08:07:48.073
Link: CVE-2023-34998
No data.
OpenCVE Enrichment
No data.
EUVD