CVE-2024-41197

Severity CVSS v4.0:
Pending analysis
Type:
CWE-287 Authentication Issues
Publication date:
22/05/2025
Last modified:
30/05/2025

Description

An issue in Ocuco Innovation - INVCLIENT.EXE v2.10.24.5 allows attackers to bypass authentication and escalate privileges to Administrator via a crafted TCP packet.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ocuco:innovation:2.10.24.5:*:*:*:*:*:*:*