CVE-2024-8314 Information

Description

An Incorrect Implementation of Authentication Algorithm and Exposure of Data Element to Wrong Ses-sion vulnerability in the session handling used in B&R APROL <4.4-00P5 may allow an authenticated network attacker to take over a currently active user session without login credentials.

Reference

https://www.br-automation.com/fileadmin/SA24P015-77573c08.pdf

Share on: