VYPR
Unrated severityNVD Advisory· Published Jan 7, 2026· Updated Feb 18, 2026

FaceSentry Access Control System 6.4.8 Authentication Credentials MiTM Disclosure

CVE-2019-25278

Description

FaceSentry Access Control System 6.4.8 contains a cleartext transmission vulnerability that allows remote attackers to intercept authentication credentials. Attackers can perform man-in-the-middle attacks to capture HTTP cookie authentication information during network communication.

Affected products

2

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

3

News mentions

0

No linked articles in our index yet.