The device allows an unauthenticated attacker to bypass authentication
and modify the cookie to reveal hidden pages that allows more critical
operations to the transmitter.
and modify the cookie to reveal hidden pages that allows more critical
operations to the transmitter.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-19483 | The device allows an unauthenticated attacker to bypass authentication and modify the cookie to reveal hidden pages that allows more critical operations to the transmitter. |
Fixes
Solution
No solution given by the vendor.
Workaround
Electrolink has not responded to requests to work with CISA to mitigate these vulnerabilities. Users of the affected products are encouraged to contact Electrolink https://electrolink.com/contacts/ for additional information.
References
History
No history.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2024-08-01T22:27:36.412Z
Reserved: 2024-01-05T22:07:42.977Z
Link: CVE-2024-21872
Updated: 2024-08-01T22:27:36.412Z
Status : Awaiting Analysis
Published: 2024-04-18T23:15:07.123
Modified: 2024-11-21T08:55:09.673
Link: CVE-2024-21872
No data.
OpenCVE Enrichment
No data.
EUVD