4ipnet EAP-767 v3.42.00 is vulnerable to Incorrect Access...
Critical severity
Unreviewed
Published
Feb 15, 2024
to the GitHub Advisory Database
•
Updated Aug 16, 2024
Description
Published by the National Vulnerability Database
Feb 14, 2024
Published to the GitHub Advisory Database
Feb 15, 2024
Last updated
Aug 16, 2024
4ipnet EAP-767 v3.42.00 is vulnerable to Incorrect Access Control. The device uses the same set of credentials, regardless of how many times a user logs in, the content of the cookie remains unchanged.
References