Описание
A Use of Hardcoded Credentials vulnerability exists in AquaView versions 1.60, 7.x, and 8.x that could allow an authenticated local attacker to manipulate users and system settings.
Ссылки
- Third Party AdvisoryUS Government Resource
- MitigationVendor Advisory
- Third Party AdvisoryUS Government Resource
- MitigationVendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия от 7.0.0 (включая) до 8.0.1 (исключая)
Одно из
cpe:2.3:a:xylem:aquaview:*:*:*:*:*:*:*:*
cpe:2.3:a:xylem:aquaview:1.60:*:*:*:*:*:*:*
EPSS
Процентиль: 11%
0.00038
Низкий
9.3 Critical
CVSS3
8.8 High
CVSS3
4.6 Medium
CVSS2
Дефекты
CWE-798
Связанные уязвимости
github
почти 4 года назад
A Use of Hardcoded Credentials vulnerability exists in AquaView versions 1.60, 7.x, and 8.x that could allow an authenticated local attacker to manipulate users and system settings.
EPSS
Процентиль: 11%
0.00038
Низкий
9.3 Critical
CVSS3
8.8 High
CVSS3
4.6 Medium
CVSS2
Дефекты
CWE-798