Home
CRITICAL: 9.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:NDefault status
unaffected
3.1.2rc11
affected
Default status
unaffected
3.1.2rc11
affected
Description
Optigo Networks Visual BACnet Capture Tool and Optigo Visual Networks Capture Tool version 3.1.2rc11 contain an exposed web management service that could allow an attacker to bypass authentication measures and gain controls over utilities within the products.
Problem types
CWE-288 Authentication Bypass Using an Alternate Path or Channel
Product status
3.1.2rc11
3.1.2rc11
Credits
Tomer Goldschmidt of Claroty Team82
References
www.cisa.gov/news-events/ics-advisories/icsa-25-070-02