Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Harkenzo

#23679of 53,630
10Total CVSS
Vulnerabilities · 1
PT-2022-6352
10
2022-09-21
Unified Intents · Unified Remote · CVE-2022-3229
**Name of the Vulnerable Software and Affected Versions** Unified Remote (affected versions not specified) **Description** The web management interface for Unified Intents' Unified Remote solution does not require authentication, allowing a remote, unauthenticated attacker to change or disable authentication requirements for the Unified Remote protocol. This can be leveraged to run code of the attacker's choosing. The issue is related to an incorrect authorization procedure in the web management interface. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.