An authentication bypass vulnerability exists in the CMA run_server_6877 functionality of Garrett Metal Detectors iC Module CMA Version 5.0. A properly-timed network connection can lead to authentication bypass via session hijacking. An attacker can send a sequence of requests to trigger this vulnerability.
References
Link | Resource |
---|---|
https://talosintelligence.com/vulnerability_reports/TALOS-2021-1354 | Exploit Third Party Advisory |
Configurations
Information
Published : 2021-12-22 11:15
Updated : 2022-08-31 12:17
NVD link : CVE-2021-21902
Mitre link : CVE-2021-21902
JSON object : View
CWE
CWE-287
Improper Authentication
Products Affected
garrett
- ic_module_cma