CVE-2023-6329
27.11.2023, 17:15
An authentication bypass vulnerability exists in Control iD iDSecure v4.7.32.0. The login routine used by iDS-Core.dll contains a "passwordCustom" option that allows an unauthenticated attacker to compute valid credentials that can be used to bypass authentication and act as an administrative user.Enginsight
Vendor | Product | Version |
---|---|---|
controlid | idsecure | 4.7.32.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration