Beveiligingsadvies

CVE-2019-13379

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2019-07-07 15:44:11
Laatst bijgewerkt 2024-08-04 23:49:24
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

On AVTECH Room Alert 3E devices before 2.2.5, an attacker with access to the device's web interface may escalate privileges from an unauthenticated user to administrator by performing a cmd.cgi?action=ResetDefaults&src=RA reset and using the default credentials to get in.