Lucene search

K
cvelistIcscertCVELIST:CVE-2012-3018
HistoryJul 31, 2012 - 10:00 a.m.

CVE-2012-3018

2012-07-3110:00:00
icscert
www.cve.org
4
security configurator
iconics genesis32
bizviz
local users
access restrictions
encryption algorithm
authentication code

AI Score

6.5

Confidence

Low

EPSS

0

Percentile

0.4%

The lockout-recovery feature in the Security Configurator component in ICONICS GENESIS32 9.22 and earlier and BizViz 9.22 and earlier uses an improper encryption algorithm for generation of an authentication code, which allows local users to bypass intended access restrictions and obtain administrative access by predicting a challenge response.

AI Score

6.5

Confidence

Low

EPSS

0

Percentile

0.4%

Related for CVELIST:CVE-2012-3018