Security Advisory

CVE-2024-8314

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-03-25 04:30:17
Last updated 2025-03-25 13:34:31
Assigner ABB
State PUBLISHED

Description

An Incorrect Implementation of Authentication Algorithm and Exposure of Data Element to Wrong Ses-sion vulnerability in the session handling used in B&R APROL <4.4-00P5 may allow an authenticated network attacker to take over a currently active user session without login credentials.