Medium severity5.9NVD Advisory· Published Jul 18, 2022· Updated Jun 17, 2026
CVE-2022-30623
CVE-2022-30623
Description
The server checks the user's cookie in a non-standard way, and a value is entered in the cookie value name of the status and its value is set to true to bypass the identification with the system using a username and password.
Affected products
3cpe:2.3:o:chcnav:p5e_gnss_firmware:4.1:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:chcnav:p5e_gnss_firmware:4.1:*:*:*:*:*:*:*
- cpe:2.3:o:chcnav:p5e_gnss_firmware:4.2:*:*:*:*:*:*:*
- Range: 4.2
Patches
Vulnerability mechanics
References
1- www.gov.il/en/Departments/faq/cve_advisoriesnvdThird Party Advisory
News mentions
0No linked articles in our index yet.