Improper Session Token Generation in Janitza UMG Devices

Improper Session Token Generation in Janitza UMG Devices

CVE-2015-3973 · MEDIUM Severity

AV:N/AC:L/AU:N/C:P/I:N/A:N

Janitza UMG 508, 509, 511, 604, and 605 devices improperly generate session tokens, which makes it easier for remote attackers to determine a PIN value via unspecified computations on session-token values.

Learn more about our Web Application Penetration Testing UK.