PT-2021-11652 · Unknown · Pacsone Server
Xinjie Ma
·
Published
2021-02-03
·
Updated
2021-07-21
·
CVE-2020-29165
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions:
PacsOne Server (PACS Server In One Box) versions prior to 7.1.1
Description:
The issue is related to incorrect access control, which can result in an attacker remotely gaining administrator privileges.
Recommendations:
For versions prior to 7.1.1, update to version 7.1.1 or later to resolve the issue.
Exploit
Fix
Missing Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Pacsone Server