CVE-2020-11542

3xLOGIC Infinias eIDC32 2.213 devices with Web 1.107 allow Authentication Bypass via CMD.HTM?CMD= because authentication depends on the client side's interpretation of the MYKEY substring.
Configurations

Configuration 1


Information

Published : 2020-04-04 10:15

Updated : 2021-07-21 11:39


NVD link : CVE-2020-11542

Mitre link : CVE-2020-11542

Products Affected
No products.
CWE
CWE-287

CWE-319

Cleartext Transmission of Sensitive Information