ZeroHour

CVE-2023-49262

CVSS 3.1
9.8 critical
EPSS
<1%p50
Published
()
Modified
Description

The authentication mechanism can be bypassed by overflowing the value of the Cookie "authentication" field, provided there is an active user session.

Vendors
hongdian
Products
h8951-4g-esp firmware
Weakness
CWE-190, CWE-287
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.