An incorrect authentication vulnerability has been found in Socomec Net Vision affecting version 7.20. This vulnerability allows an attacker to perform a brute force attack on the application and recover a valid session, because the application uses a five-digit integer value.
Advisories
Source ID Title
EUVD EUVD EUVD-2024-44210 An incorrect authentication vulnerability has been found in Socomec Net Vision affecting version 7.20. This vulnerability allows an attacker to perform a brute force attack on the application and recover a valid session, because the application uses a five-digit integer value.
Fixes

Solution

Vulnerability fixed in the latest version of the affected product.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: INCIBE

Published:

Updated: 2024-08-01T20:47:41.395Z

Reserved: 2024-05-07T09:41:32.272Z

Link: CVE-2024-4601

cve-icon Vulnrichment

Updated: 2024-08-01T20:47:41.395Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-05-07T12:15:10.880

Modified: 2024-11-21T09:43:11.480

Link: CVE-2024-4601

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2025-07-12T15:42:21Z