PT-2020-15621 · Forlogic · Forlogic Qualiex
Published
2020-09-02
·
Updated
2025-10-14
·
CVE-2020-24029
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
ForLogic Qualiex versions v1 through v3
Description
The issue allows unauthenticated password changes, enabling access to customer and admin permissions and data through a simple request.
Recommendations
ForLogic Qualiex versions v1 through v3: At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Improper Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Forlogic Qualiex