CVE-2024-8314

Publication date

2025-03-25 04:30:17

Family

ABB

State

PUBLISHED

Description

An Incorrect Implementation of Authentication Algorithm and Exposure of Data Element to Wrong Ses-sion vulnerability in the session handling used in B&R APROL <4.4-00P5 may allow an authenticated network attacker to take over a currently active user session without login credentials.