Beveiligingsadvies

CVE-2024-1623

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-03-14 12:47:40
Laatst bijgewerkt 2024-08-28 18:19:52
Toegewezen door INCIBE
CVSS-score 7.7
Status PUBLISHED

Beschrijving

Insufficient session timeout vulnerability in the FAST3686 V2 Vodafone router from Sagemcom. This vulnerability could allow a local attacker to access the administration panel without requiring login credentials. This vulnerability is possible because the 'Login.asp and logout.asp' files do not handle session details correctly.