PT-2022-4352 · General Bytes · General Bytes Crypto Application Server

Published

2022-08-19

·

Updated

2022-08-19

CVSS v2.0

9.4

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:N
Name of the Vulnerable Software and Affected Versions General Bytes Crypto Application Server (affected versions not specified)
Description The issue is related to a cross-site request forgery vulnerability in the General Bytes Crypto Application Server. This could allow a remote attacker to create a user with admin privileges and modify arbitrary data on the server.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Access Control

CSRF

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2022-05212

Affected Products

General Bytes Crypto Application Server