Prima Systems FlexAir, Versions 2.3.38 and prior. The session-ID is of an insufficient length and can be exploited by brute force, which may allow a remote malicious user to obtain a valid session and bypass authentication.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
primasystems flexair |