Improper Authentication vulnerability in Microchip TimeProvider 4100 (login modules) allows Session Hijacking.This issue affects TimeProvider 4100: from 1.0 before 2.4.7.
Metrics
Affected Vendors & Products
References
History
Thu, 17 Oct 2024 15:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Microchip timeprovider 4100
|
|
CPEs | cpe:2.3:h:microchip:timeprovider_4100:-:*:*:*:*:*:*:* | |
Vendors & Products |
Microchip timeprovider 4100
|
|
Metrics |
cvssV3_1
|
Mon, 07 Oct 2024 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Microchip
Microchip timeprovider 4100 Firmware |
|
CPEs | cpe:2.3:o:microchip:timeprovider_4100_firmware:*:*:*:*:*:*:*:* | |
Vendors & Products |
Microchip
Microchip timeprovider 4100 Firmware |
|
Metrics |
ssvc
|
Fri, 04 Oct 2024 20:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Improper Authentication vulnerability in Microchip TimeProvider 4100 (login modules) allows Session Hijacking.This issue affects TimeProvider 4100: from 1.0 before 2.4.7. | |
Title | Session token fixation in TimeProvider 4100 | |
Weaknesses | CWE-287 | |
References |
| |
Metrics |
cvssV4_0
|
MITRE
Status: PUBLISHED
Assigner: Microchip
Published: 2024-10-04T19:48:53.595Z
Updated: 2024-10-04T22:15:46.343Z
Reserved: 2024-08-14T15:39:44.265Z
Link: CVE-2024-43685
Vulnrichment
Updated: 2024-10-04T21:28:30.623Z
NVD
Status : Analyzed
Published: 2024-10-04T20:15:06.830
Modified: 2024-10-17T15:17:20.217
Link: CVE-2024-43685
Redhat
No data.