SEL-5030
cpe:2.3:a:selinc:sel-5030_acselerator_quickset:*:*:*:*:*:*:*
A vulnerability exists in the session management of Schweitzer Engineering Laboratories (SEL) Blueframe software, specifically in the Blueframe OS version 1.12.0 and in the Blueframe Application Suite version 1.1.0.0. This vulnerability allows an authenticated user's token to be used by another source after the user has logged out, but before the token has expired. This issue could potentially be exploited to gain unauthorized access or perform actions on behalf of the user.
Exploitation of this vulnerability could lead to unauthorized actions being performed with the privileges of the logged-out user, potentially allowing access to sensitive information or the ability to modify data or settings.
Users can update to the latest version of the SEL Blueframe software, which includes the session management fix. For detailed instructions on updating, refer to the SEL Blueframe software release notes.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.