VYPR
Unrated severityNVD Advisory· Published Apr 2, 2020· Updated Aug 5, 2024

ABB eSOMS: Viewstate without MAC Signature

CVE-2019-19092

Description

ABB eSOMS versions 4.0 to 6.0.3 use ASP.NET Viewstate without Message Authentication Code (MAC). Alterations to Viewstate might thus not be noticed.

Affected products

2
  • Hitachi/eSOMSllm-fuzzy
    Range: 4.0 to 6.0.3
  • ABB/eSOMSv5
    Range: 4.0 to 6.0.3

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.