PT-2024-27529 · Unknown · Electrolink Transmitters

Gjoko Krstic

·

Published

2024-04-18

·

Updated

2024-05-28

·

CVE-2024-3741

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions Electrolink transmitters (affected versions not specified)
Description The issue concerns an authentication bypass affecting the login cookie. An attacker can set an arbitrary value, except 'NO', to the login cookie and gain full system access.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-3741

Affected Products

Electrolink Transmitters