VYPR
Medium severity5.9NVD Advisory· Published Jul 18, 2022· Updated Jun 17, 2026

CVE-2022-30623

CVE-2022-30623

Description

The server checks the user's cookie in a non-standard way, and a value is entered in the cookie value name of the status and its value is set to true to bypass the identification with the system using a username and password.

Affected products

3
  • cpe:2.3:o:chcnav:p5e_gnss_firmware:4.1:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:chcnav:p5e_gnss_firmware:4.1:*:*:*:*:*:*:*
    • cpe:2.3:o:chcnav:p5e_gnss_firmware:4.2:*:*:*:*:*:*:*
  • Range: 4.2

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.