CVE-2023-31292

MEDIUM WAF: Low
CVSS 5.5 Published: 2023-12-29
CWE-287 CWE-287

An issue was discovered in Sesami Cash Point & Transport Optimizer (CPTO) 6.3.8.6 (#718), allows local attackers to obtain sensitive information and bypass authentication via "Back Button Refresh" attack.

WAF Coverage Analysis

Improper Authentication Low WAF Coverage

OWASP: A07:2021 Identification and Authentication Failures

Improper Authentication Low WAF Coverage

OWASP: A07:2021 Identification and Authentication Failures

Affected Software

VendorProductVersion
sesamicash_point_\&_transport_optimizer6.3.8.6.718

References

Back to CVE Database