CVE-2024-3982
27.08.2024, 13:15
An attacker with local access to machine where MicroSCADA X SYS600 is installed, could enable the session logging supporting the product and try to exploit a session hijacking of an already established session. By default, the session logging level is not enabled and only users with administrator rights can enable it.Enginsight
Vendor | Product | Version |
---|---|---|
hitachienergy | microscada_x_sys600 | 10.0 ≤ 𝑥 < 10.6 |
𝑥
= Vulnerable software versions