High severity8.8NVD Advisory· Published Oct 27, 2023· Updated Jun 17, 2026
CVE-2023-35794
CVE-2023-35794
Description
An issue was discovered in Cassia Access Controller 2.1.1.2303271039. The Web SSH terminal endpoint (spawned console) can be accessed without authentication. Specifically, there is no session cookie validation on the Access Controller; instead, there is only Basic Authentication to the SSH console.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:cassianetworks:access_controller:2.1.1.2303271039:*:*:*:*:*:*:*
- Cassia/Access Controllerdescription
- Range: 2.1.1.2303271039
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.