2022-09-28 03:25:35
twcert
PUBLISHED
Smart eVision has inadequate authorization for the database query function. A remote attacker with general user privilege, who is not explicitly authorized to access the information, can access sensitive information.