Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Heehyun Kim

#41883of 53,633
6.5Total CVSS
Vulnerabilities · 1
PT-2020-19820
6.5
2020-08-25
Ericsson Lg · Ipecs · CVE-2020-7824
**Name of the Vulnerable Software and Affected Versions** iPECS (affected versions not specified) **Description** The issue is related to insecure permission handling of session cookies in the web-based management interface. An authenticated, remote attacker could exploit this by modifying the `cookie` value, potentially gaining access to sensitive device information, including configuration files. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.