PT-2015-7671 · Hms Industrial Networks · Ewon

Karn Ganeshen

·

Published

2015-12-23

·

Updated

2016-12-07

·

CVE-2015-7924

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions eWON devices versions prior to 10.1s0
Description The issue allows remote attackers to obtain access by leveraging an unattended workstation, due to the failure of the device to discard browser session data after a log-off action.
Recommendations For versions prior to 10.1s0, update the firmware to version 10.1s0 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2015-7924

Affected Products

Ewon