9.8
CVSSv3

CVE-2018-19783

Published: 21/03/2019 Updated: 27/03/2019
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Kentix MultiSensor-LAN 5.63.00 devices and previous allow Authentication Bypass via an Alternate Path or Channel.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

kentix multisensor-lan_firmware

Exploits

Kentix MultiSensor-LAN versions 56300 and below suffer from an authentication bypass vulnerability The web based application is not using a usual session concept with a session cookie for managing authenticated user sessions Some URLs are protected with HTTP Basic Authentication, but the user management web page can be accessed and used without ...