Authentication Bypass in Tridium Niagara AX Framework
CVE-2012-3024
Currently unrated
What is CVE-2012-3024?
The Tridium Niagara AX Framework version 3.6 is vulnerable due to the use of predictable values for session IDs and encryption keys. This allows remote attackers to employ brute-force methods to bypass authentication mechanisms, potentially leading to unauthorized access to sensitive system controls and data.
