Количество 3
Количество 3
CVE-2023-51574
Voltronic Power ViewPower updateManagerPassword Exposed Dangerous Method Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installations of Voltronic Power ViewPower. Authentication is not required to exploit this vulnerability. The specific flaw exists within the updateManagerPassword method. The issue results from the exposure of a dangerous function. An attacker can leverage this vulnerability to bypass authentication on the system. Was ZDI-CAN-22010.
GHSA-9wjm-rm4c-rj9x
Voltronic Power ViewPower updateManagerPassword Exposed Dangerous Method Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installations of Voltronic Power ViewPower. Authentication is not required to exploit this vulnerability. The specific flaw exists within the updateManagerPassword method. The issue results from the exposure of a dangerous function. An attacker can leverage this vulnerability to bypass authentication on the system. Was ZDI-CAN-22010.
BDU:2024-00140
Уязвимость метода updateManagerPassword программного обеспечения для управления источниками бесперебойного питания Voltronic Power ViewPower, позволяющая нарушителю обойти процесс аутентификации и получить несанкционированный доступ к программному обеспечению
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2023-51574 Voltronic Power ViewPower updateManagerPassword Exposed Dangerous Method Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installations of Voltronic Power ViewPower. Authentication is not required to exploit this vulnerability. The specific flaw exists within the updateManagerPassword method. The issue results from the exposure of a dangerous function. An attacker can leverage this vulnerability to bypass authentication on the system. Was ZDI-CAN-22010. | CVSS3: 9.8 | 1% Низкий | почти 2 года назад | |
GHSA-9wjm-rm4c-rj9x Voltronic Power ViewPower updateManagerPassword Exposed Dangerous Method Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installations of Voltronic Power ViewPower. Authentication is not required to exploit this vulnerability. The specific flaw exists within the updateManagerPassword method. The issue results from the exposure of a dangerous function. An attacker can leverage this vulnerability to bypass authentication on the system. Was ZDI-CAN-22010. | CVSS3: 9.8 | 1% Низкий | почти 2 года назад | |
BDU:2024-00140 Уязвимость метода updateManagerPassword программного обеспечения для управления источниками бесперебойного питания Voltronic Power ViewPower, позволяющая нарушителю обойти процесс аутентификации и получить несанкционированный доступ к программному обеспечению | CVSS3: 9.8 | 1% Низкий | около 2 лет назад |
Уязвимостей на страницу