Authentication Bypass Vulnerability in Hirschmann Industrial HiVision Products
CVE-2017-20237
9.3CRITICAL
What is CVE-2017-20237?
The Hirschmann Industrial HiVision products prior to versions 06.0.07 and 07.0.03 are susceptible to an authentication bypass vulnerability within the master service. This flaw enables unauthorized remote attackers to execute arbitrary commands as if they had administrative privileges. By leveraging exposed interface methods over the remote service, attackers can effectively bypass authentication and achieve unauthorized remote code execution on the host operating system, posing significant risks to network integrity and security.
Affected Version(s)
Hirschmann Industrial HiVision 0 <= 06.0.06
Hirschmann Industrial HiVision 0 <= 06.0.06
Hirschmann Industrial HiVision 0 <= 07.0.02
