PT-2019-17848 · Overit · Overit Geocall
Published
2019-04-01
·
Updated
2022-10-14
·
CVE-2019-5890
CVSS v2.0
9.0
High
| Vector | AV:N/AC:L/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
OverIT Geocall version 6.3 before build 2:346977
Description
An issue in OverIT Geocall allows an authenticated user to obtain access to the Administrative control panel and execute administrative functions due to weak authentication and session management.
Recommendations
For OverIT Geocall version 6.3 before build 2:346977, update to a version that includes build 2:346977 or later to resolve the issue. As a temporary workaround, consider restricting access to the Administrative control panel to minimize the risk of exploitation.
Fix
Improper Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Overit Geocall