An attacker with local access to the machine could record the traffic,
which could allow them to resend requests without the server
authenticating that the user or session are valid.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-28494 | An attacker with local access to the machine could record the traffic, which could allow them to resend requests without the server authenticating that the user or session are valid. |
Fixes
Solution
PTC recommends users upgrade to Vuforia Studio release 9.9 https://support.ptc.com/help/vuforia/studio/en/ or higher.
Workaround
No workaround given by the vendor.
References
History
Mon, 06 Jan 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2025-01-06T19:52:37.584Z
Reserved: 2023-04-24T23:30:29.247Z
Link: CVE-2023-24476
Updated: 2024-08-02T10:56:04.159Z
Status : Modified
Published: 2023-06-07T22:15:09.553
Modified: 2024-11-21T07:47:56.170
Link: CVE-2023-24476
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD