CVE
- Id
- 37651
- CVE No.
- CVE-2009-0216
- Status
- Candidate
- Description
- GE Fanuc iFIX 5.0 and earlier relies on client-side authentication involving a weakly encrypted local password file, which allows remote attackers to bypass intended access restrictions and start privileged server login sessions by recovering a password or by using a modified program module.
- Phase
- Assigned (20090120)
- Votes
- None (candidate not yet proposed)
- Comments