CVE Published: 06/06/2018 |
CVE Updated: 17/09/2024 |
CVE Year: 2017 Source: icscert |
Vendor: ICS-CERT |
Product: ABB IP GATEWAY Status : PUBLISHED
CVE-2017-7906 Description
In ABB IP GATEWAY 3.39 and prior, the web server does not sufficiently verify that a request was performed by the authenticated user, which may allow an attacker to launch a request impersonating that user.