PT-2019-12776 · Anviz · Anviz Access Control Devices

Pedro Rodrigues

+1

·

Published

2019-12-02

·

Updated

2020-08-24

·

CVE-2019-12388

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Anviz access control devices (affected versions not specified)
Description The issue concerns the cleartext transmission of sensitive information, including passwords, pins, and names, when Anviz access control devices respond to queries on port tcp/5010.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Cleartext Transmission of Sensitive Information

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-12388

Affected Products

Anviz Access Control Devices