PT-2017-19084 · Envitech · Envitech Envidas Ultimate
Publicado
2017-10-17
·
Atualizado
2019-10-09
·
CVE-2017-9625
CVSS v3.1
8.2
Alta
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
Envitech EnviDAS Ultimate versions prior to 1.0.0.5
Description
An issue with improper authentication was found, allowing potential attackers to view information, modify settings, or execute code remotely due to the lack of proper authentication in the web application.
Recommendations
For versions prior to 1.0.0.5, update to version 1.0.0.5 or later to resolve the issue.
Correção
Improper Authentication
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Envitech Envidas Ultimate