VYPR
Critical severity9.8NVD Advisory· Published Nov 27, 2023· Updated Jun 17, 2026

CVE-2023-6329

CVE-2023-6329

Description

An authentication bypass vulnerability exists in Control iD iDSecure v4.7.32.0. The login routine used by iDS-Core.dll contains a "passwordCustom" option that allows an unauthenticated attacker to compute valid credentials that can be used to bypass authentication and act as an administrative user.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • ControlID/iDSecurellm-fuzzy2 versions
    = 4.7.32.0+ 1 more
    • (no CPE)range: = 4.7.32.0
    • cpe:2.3:a:controlid:idsecure:4.7.32.0:*:*:*:*:*:*:*
  • Control iD/iDSecurev5
    Range: 4.7.32.0

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.