An Insufficient Session Expiration issue exists in ProMinent MultiFLEX M10a Controller web interface. The user's session is available for an extended period beyond the last activity, allowing an malicious user to reuse an old session for authorization.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
prominent multiflex_m10a_controller_firmware |