CVE-2021-27453

HIGH

Mesa Labs AmegaView <3.0 - Auth Bypass

Title source: llm
STIX 2.1

Description

Mesa Labs AmegaView Versions 3.0 uses default cookies that could be set to bypass authentication to the web application, which may allow an attacker to gain access.

References (1)

Core 1
Core References
Third Party Advisory, US Government Resource x_refsource_confirm
https://us-cert.cisa.gov/ics/advisories/icsa-21-147-03

Scores

CVSS v3 7.3
EPSS 0.0098
EPSS Percentile 57.6%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

Details

CWE
CWE-288
Status published
Products (1)
mesalabs/amegaview < 3.0
Published Dec 21, 2021
Tracked Since Feb 18, 2026