Vulnerabilities > Tridium > Critical

DATE CVE VULNERABILITY TITLE RISK
2018-08-20 CVE-2017-16748 Improper Authentication vulnerability in Tridium Niagara and Niagara AX Framework
An attacker can log into the local Niagara platform (Niagara AX Framework Versions 3.8 and prior or Niagara 4 Framework Versions 4.4 and prior) using a disabled account name and a blank password, granting the attacker administrator access to the Niagara system.
network
low complexity
tridium CWE-287
critical
9.8