Security Advisory

CVE-2022-21184

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-06-17 17:40:12
Last updated 2025-04-15 19:00:38
Assigner talos
State PUBLISHED

Description

An information disclosure vulnerability exists in the License registration functionality of Bachmann Visutec GmbH Atvise 3.5.4, 3.6 and 3.7. A plaintext HTTP request can lead to a disclosure of login credentials. An attacker can perform a man-in-the-middle attack to trigger this vulnerability.