CVE-2015-7914

HIGH

Sauter EY-WS505F0x0 moduWeb Vision <1.6.0 - Auth Bypass

Title source: llm
STIX 2.1

Description

Sauter EY-WS505F0x0 moduWeb Vision before 1.6.0 allows remote attackers to bypass authentication by leveraging knowledge of a password hash without knowledge of the associated password.

References (2)

Core 2
Core References
Mailing List mailing-list x_refsource_fulldisc
http://seclists.org/fulldisclosure/2016/Feb/25
Third Party Advisory, US Government Resource x_refsource_misc
https://ics-cert.us-cert.gov/advisories/ICSA-16-033-01

Scores

CVSS v3 8.1
EPSS 0.0227
EPSS Percentile 80.8%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-254 CWE-287
Status published
Products (1)
sauter/moduweb_vision < 1.5.5
Published Feb 06, 2016
Tracked Since Feb 18, 2026