← Back

CVE-2009-0216

nvd nist
Published: Feb 13, 2009Modified: Apr 23, 2026

JSON object

Loading...
10.0
Vector
AV:N/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 10.0 / Impact: 10.0
Source: NVD

Description

GE Fanuc iFIX 5.0 and earlier relies on client-side authentication involving a weakly encrypted local password file, which allows remote attackers to bypass intended access restrictions and start privileged server login sessions by recovering a password or by using a modified program module.

Affected (10)

Products: Ge Fanuc: Ifix
1 product
Ifix
Configuration A
10 vulnerable
Vulnerable SoftwareAffected Versions
Ge Fanuc
Up to 5.0
Version 2.0
Version 2.21
Version 2.2
Version 2.5
Version 2.6
Version 3.0
Version 3.5
Version 4.0
Version 4.5

Related CWEs

Timeline

No history available yet.