← Back to CVE List

CVE-2023-6329

Published: 2023-11-27T17:15Z
Last Modified: 2024-11-21T08:43Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
An authentication bypass vulnerability exists in Control iD iDSecure v4.7.32.0. The login routine used by iDS-Core.dll contains a "passwordCustom" option that allows an unauthenticated attacker to compute valid credentials that can be used to bypass authentication and act as an administrative user. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt