Back to search
CVE-2009-0216
Published: Feb 13, 2009
Modified: Aug 7, 2024
PUBLISHED
Description
GE Fanuc iFIX 5.0 and earlier relies on client-side authentication involving a weakly encrypted local password file, which allows remote attackers to bypass intended access restrictions and start privileged server login sessions by recovering a password or by using a modified program module.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
33739
vdb-entry
x_refsource_BID
VU#310355
third-party-advisory
x_refsource_CERT-VN
gefanucifix-multiple-unauth-access(48691)
vdb-entry
x_refsource_XF
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now