PT-2022-6314 · Unknown · Sicam Toolbox Ii
Published
2022-02-08
·
Updated
2022-02-16
·
CVE-2021-45106
CVSS v2.0
9.0
High
| Vector | AV:N/AC:L/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
SICAM TOOLBOX II versions prior to the fixed version
Description
A vulnerability has been identified in SICAM TOOLBOX II, related to insufficient protection of the data transmission control protocol. This could allow an attacker to access the database using the 1522 TCP port. The issue is associated with a circumventable access control within a database service.
Recommendations
For SICAM TOOLBOX II versions prior to the fixed version, update to the latest version to resolve the issue.
As a temporary workaround, consider restricting access to the database service to minimize the risk of exploitation.
Avoid using the vulnerable access control within the database service until the issue is resolved.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Using Hardcoded Credentials
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Sicam Toolbox Ii