CVE-2016-4501

Severity CVSS v4.0:
Pending analysis
Type:
CWE-284 Improper Access Control
Publication date:
31/05/2016
Last modified:
12/04/2025

Description

Environmental Systems Corporation (ESC) 8832 Data Controller 3.02 and earlier mishandles sessions, which allows remote attackers to bypass authentication and make arbitrary configuration changes via unspecified vectors.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:envirosys:esc_8832_data_controller:*:*:*:*:*:*:*:* 3.02 (including)