Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m4v3-rhqc-gh4h

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Advantech iView, versions 5.6 and prior, has an improper authentication for critical function (CWE-306) issue. Successful exploitation of this vulnerability may allow an attacker to obtain the information of the user table, including the administrator credentials in plain text. An attacker may also delete the administrator account.

Advantech iView, versions 5.6 and prior, has an improper authentication for critical function (CWE-306) issue. Successful exploitation of this vulnerability may allow an attacker to obtain the information of the user table, including the administrator credentials in plain text. An attacker may also delete the administrator account.

EPSS

Процентиль: 56%
0.00336
Низкий

Связанные уязвимости

CVSS3: 9.8
nvd
больше 5 лет назад

Advantech iView, versions 5.6 and prior, has an improper authentication for critical function (CWE-306) issue. Successful exploitation of this vulnerability may allow an attacker to obtain the information of the user table, including the administrator credentials in plain text. An attacker may also delete the administrator account.

EPSS

Процентиль: 56%
0.00336
Низкий