PT-2019-13978 · Prise · Prise Adas
Publicado
2019-09-20
·
Atualizado
2020-08-24
·
CVE-2019-15087
CVSS v3.1
7.2
Alta
| Vetor | AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
PRiSE adAS version 1.7.0
Description
An issue allows an authenticated user to change the function used to hash passwords to any function, leading to remote code execution.
Recommendations
For PRiSE adAS version 1.7.0, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Code Injection
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Prise Adas