An incorrect authentication vulnerability has been found in Socomec Net Vision affecting version 7.20. This vulnerability allows an attacker to perform a brute force attack on the application and recover a valid session, because the application uses a five-digit integer value.
Advisories
Source ID Title
EUVD EUVD EUVD-2024-44210 An incorrect authentication vulnerability has been found in Socomec Net Vision affecting version 7.20. This vulnerability allows an attacker to perform a brute force attack on the application and recover a valid session, because the application uses a five-digit integer value.
Fixes

Solution

Vulnerability fixed in the latest version of the affected product.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: INCIBE

Published:

Updated: 2024-08-01T20:47:41.395Z

Reserved: 2024-05-07T09:41:32.272Z

Link: CVE-2024-4601

cve-icon Vulnrichment

Updated: 2024-08-01T20:47:41.395Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-05-07T12:15:10.880

Modified: 2024-11-21T09:43:11.480

Link: CVE-2024-4601

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2025-07-12T15:42:21Z

Weaknesses