Beveiligingsadvies

CVE-2022-22792

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2022-02-16 16:38:07
Laatst bijgewerkt 2024-09-17 02:48:02
Toegewezen door INCD
CVSS-score 6.6
Status PUBLISHED

Beschrijving

MobiSoft - MobiPlus User Take Over and Improper Handling of url Parameters Attacker can navigate to specific url which will expose all the users and password in clear text. http://IP/MobiPlusWeb/Handlers/MainHandler.ashx?MethodName=GridData&GridName=Users