First published: Wed Jun 07 2023(Updated: )
The local Vuforia web application does not support HTTPS, and federated credentials are passed via basic authentication.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
PTC Vuforia Studio | <9.9 | |
PTC Vuforia Studio: all versions prior to 9.9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2023-29168.
The title of this vulnerability is 'The local Vuforia web application does not support HTTPS and federated credentials are passed via basic authentication.'
No, the local Vuforia web application does not support HTTPS.
Federated credentials are passed via basic authentication in the local Vuforia web application.
The severity of this vulnerability is high with a CVSS score of 7.5.