PT-2017-12671 · Opw Fuel Management Systems · Sitesentinel Isite Atg+2

Publicado

2017-09-09

·

Atualizado

2019-10-09

·

CVE-2017-12733

CVSS v3.1

9.8

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions OPW Fuel Management Systems SiteSentinel Integra 100 versions older than V175 OPW Fuel Management Systems SiteSentinel Integra 100 versions V175 through V189 OPW Fuel Management Systems SiteSentinel Integra 100 versions V191 through V195 OPW Fuel Management Systems SiteSentinel Integra 500 versions older than V175 OPW Fuel Management Systems SiteSentinel Integra 500 versions V175 through V189 OPW Fuel Management Systems SiteSentinel Integra 500 versions V191 through V195 OPW Fuel Management Systems SiteSentinel iSite ATG versions older than V175 OPW Fuel Management Systems SiteSentinel iSite ATG versions V175 through V189 OPW Fuel Management Systems SiteSentinel iSite ATG versions V191 through V195 OPW Fuel Management Systems SiteSentinel iSite ATG version V16Q3.1
Description A Missing Authentication for Critical Function issue was discovered, allowing an attacker to create an application user account and gain administrative privileges.
Recommendations For OPW Fuel Management Systems SiteSentinel Integra 100 versions older than V175, update to a version newer than V175. For OPW Fuel Management Systems SiteSentinel Integra 100 versions V175 through V189, update to a version newer than V189. For OPW Fuel Management Systems SiteSentinel Integra 100 versions V191 through V195, update to a version newer than V195. For OPW Fuel Management Systems SiteSentinel Integra 500 versions older than V175, update to a version newer than V175. For OPW Fuel Management Systems SiteSentinel Integra 500 versions V175 through V189, update to a version newer than V189. For OPW Fuel Management Systems SiteSentinel Integra 500 versions V191 through V195, update to a version newer than V195. For OPW Fuel Management Systems SiteSentinel iSite ATG versions older than V175, update to a version newer than V175. For OPW Fuel Management Systems SiteSentinel iSite ATG versions V175 through V189, update to a version newer than V189. For OPW Fuel Management Systems SiteSentinel iSite ATG versions V191 through V195, update to a version newer than V195. For OPW Fuel Management Systems SiteSentinel iSite ATG version V16Q3.1, update to a version newer than V16Q3.1.

Correção

Missing Authentication

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2017-12733

Produtos afetados

Sitesentinel Integra 100
Sitesentinel Integra 500
Sitesentinel Isite Atg