CVE-2023-4669
14.09.2023, 19:16
Authentication Bypass by Assumed-Immutable Data vulnerability in Exagate SYSGuard 3001 allows Authentication Bypass.This issue affects SYSGuard 3001: before 3.2.20.0.Enginsight
Vendor | Product | Version |
---|---|---|
exagate | sysguard_3001_firmware | 𝑥 < 3.2.20.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-302 - Authentication Bypass by Assumed-Immutable DataThe authentication scheme or implementation uses key data elements that are assumed to be immutable, but can be controlled or modified by the attacker.
- CWE-287 - Improper AuthenticationWhen an actor claims to have a given identity, the software does not prove or insufficiently proves that the claim is correct.