A vulnerability has been identified in CPCI85 Central Processing/Communication (All versions < V5.40), SICORE Base system (All versions < V1.4.0). The password of administrative accounts of the affected applications can be reset without requiring the knowledge of the current password, given the auto login is enabled. This could allow an unauthorized attacker to obtain administrative access of the affected applications.
                
            References
                    Configurations
                    No configuration.
History
                    No history.
Information
                Published : 2024-07-22 14:15
Updated : 2024-07-24 12:55
NVD link : CVE-2024-37998
Mitre link : CVE-2024-37998
CVE.ORG link : CVE-2024-37998
JSON object : View
Products Affected
                No product.
CWE
                
                    
                        
                        CWE-620
                        
            Unverified Password Change
