A denial of service vulnerability exists in Contec CONPROSYS HMI System versions 3.5.2 and prior. When there is a time-zone mismatch in certain configuration files, a remote, unauthenticated attacker may deny logins for an extended period of time.
The product does not properly limit the number or frequency of interactions that it has with an actor, such as the number of incoming requests.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Conprosys_hmi_system | Contec | * | 3.5.3 (excluding) |