Description
An incorrect authentication vulnerability has been found in Socomec Net Vision affecting version 7.20. This vulnerability allows an attacker to perform a brute force attack on the application and recover a valid session, because the application uses a five-digit integer value.
Published: 2024-05-07
Score: 6.7 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

Vendor Solution

Vulnerability fixed in the latest version of the affected product.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2024-44210 An incorrect authentication vulnerability has been found in Socomec Net Vision affecting version 7.20. This vulnerability allows an attacker to perform a brute force attack on the application and recover a valid session, because the application uses a five-digit integer value.
History

No history.

Subscriptions

Socomec Net Vision
cve-icon MITRE

Status: PUBLISHED

Assigner: INCIBE

Published:

Updated: 2024-08-01T20:47:41.395Z

Reserved: 2024-05-07T09:41:32.272Z

Link: CVE-2024-4601

cve-icon Vulnrichment

Updated: 2024-08-01T20:47:41.395Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-05-07T12:15:10.880

Modified: 2024-11-21T09:43:11.480

Link: CVE-2024-4601

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2025-07-12T15:42:21Z

Weaknesses