CVE-2023-1898

Severity CVSS v4.0:
Pending analysis
Type:
CWE-330 Use of Insufficiently Random Value
Publication date:
12/06/2023
Last modified:
07/11/2023

Description

Atlas Copco Power Focus 6000 web server uses a small amount of session ID numbers. An attacker could enter a session ID number to retrieve data for an active user’s session.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:atlascopco:power_focus_6000_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:atlascopco:power_focus_6000:-:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools