Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vxr6-pwvm-cf57

Опубликовано: 21 окт. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

A vulnerability has been identified in Siveillance Video Mobile Server V2022 R2 (All versions < V22.2a (80)). The mobile server component of affected applications improperly handles the log in for Active Directory accounts that are part of Administrators group. This could allow an unauthenticated remote attacker to access the application without a valid account.

A vulnerability has been identified in Siveillance Video Mobile Server V2022 R2 (All versions < V22.2a (80)). The mobile server component of affected applications improperly handles the log in for Active Directory accounts that are part of Administrators group. This could allow an unauthenticated remote attacker to access the application without a valid account.

EPSS

Процентиль: 78%
0.01192
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-1390
CWE-287
CWE-863

Связанные уязвимости

CVSS3: 9.8
nvd
больше 3 лет назад

A vulnerability has been identified in Siveillance Video Mobile Server V2022 R2 (All versions < V22.2a (80)). The mobile server component of affected applications improperly handles the log in for Active Directory accounts that are part of Administrators group. This could allow an unauthenticated remote attacker to access the application without a valid account.

CVSS3: 9.4
fstec
больше 3 лет назад

Уязвимость программного обеспечения управления системами IP-видеонаблюдения Siveillance Video Mobile Server, связанная с ошибками при обработке входных данных учетных записей Active Directory, позволяющая нарушителю получить полный доступ к программному обеспечению

EPSS

Процентиль: 78%
0.01192
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-1390
CWE-287
CWE-863