Security Advisory

CVE-2022-36780

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-09-13 14:57:56
Last updated 2024-09-17 02:36:24
Assigner INCD
State PUBLISHED

Description

Avdor CIS - crystal quality Credentials Management Errors. The product is phone call recorder, you can hear all the recorded calls without authenticate to the system. Attacker sends crafted URL to the system: ip:port//V=2;ChannellD=number;Ext=number;Command=startLM;Client=number;Request=number;R=number number - id of the recorded number.