CVE-2023-24476

LOW

PTC Vuforia Studio <= 9.9 - Authentication Bypass

Title source: llm
STIX 2.1

Description

An attacker with local access to the machine could record the traffic, which could allow them to resend requests without the server authenticating that the user or session are valid.

References (2)

Core 2

Scores

CVSS v3 1.8
EPSS 0.0013
EPSS Percentile 3.0%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:U/C:L/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-285
Status published
Products (1)
ptc/vuforia_studio < 9.9
Published Jun 07, 2023
Tracked Since Feb 18, 2026