4.4
CVSSv2

CVE-2012-3018

Published: 31/07/2012 Updated: 31/07/2012
CVSS v2 Base Score: 4.4 | Impact Score: 6.4 | Exploitability Score: 3.4
VMScore: 392
Vector: AV:L/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

The lockout-recovery feature in the Security Configurator component in ICONICS GENESIS32 9.22 and previous versions and BizViz 9.22 and previous versions uses an improper encryption algorithm for generation of an authentication code, which allows local users to bypass intended access restrictions and obtain administrative access by predicting a challenge response.

Vulnerable Product Search on Vulmon Subscribe to Product

iconics genesis32

iconics genesis32 9.13

iconics genesis32 9.21

iconics genesis32 9.0

iconics genesis32 9.2

iconics genesis32 9.20

iconics genesis32 9.1

iconics genesis32 9.01

iconics genesis32 8.05

iconics bizviz 9.20

iconics bizviz 8.05

iconics bizviz 9.0

iconics bizviz 9.1

iconics bizviz 9.01

iconics bizviz 9.13

iconics bizviz

iconics bizviz 9.21

iconics bizviz 9.2