CVE-2012-3024

Tridium Niagara AX Framework <3.6 - Auth Bypass

Title source: llm

Description

Tridium Niagara AX Framework through 3.6 uses predictable values for (1) session IDs and (2) keys, which might allow remote attackers to bypass authentication via a brute-force attack.

Scores

EPSS 0.0027
EPSS Percentile 49.9%

Classification

CWE
CWE-287
Status draft

Affected Products (1)

tridium/niagara_ax < 3.6

Timeline

Published Aug 16, 2012
Tracked Since Feb 18, 2026