PT-2022-6314 · Unknown · Sicam Toolbox Ii

Published

2022-02-08

·

Updated

2022-02-16

·

CVE-2021-45106

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions SICAM TOOLBOX II versions prior to the fixed version
Description A vulnerability has been identified in SICAM TOOLBOX II, related to insufficient protection of the data transmission control protocol. This could allow an attacker to access the database using the 1522 TCP port. The issue is associated with a circumventable access control within a database service.
Recommendations For SICAM TOOLBOX II versions prior to the fixed version, update to the latest version to resolve the issue. As a temporary workaround, consider restricting access to the database service to minimize the risk of exploitation. Avoid using the vulnerable access control within the database service until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Using Hardcoded Credentials

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2023-00827
CVE-2021-45106

Affected Products

Sicam Toolbox Ii