Description
Improper Access Control vulnerability in the /Exago/WrImageResource.adx route as used in Device42 Asset Management Appliance allows an unauthenticated attacker to read sensitive server files with root permissions. This issue affects: Device42 CMDB versions prior to 18.01.00.
No analysis available yet.
Remediation
Vendor Solution
An update to Device42 CMDB version 18.01.00 fixes the issue.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-24717 | Improper Access Control vulnerability in the /Exago/WrImageResource.adx route as used in Device42 Asset Management Appliance allows an unauthenticated attacker to read sensitive server files with root permissions. This issue affects: Device42 CMDB versions prior to 18.01.00. |
References
History
Tue, 17 Sep 2024 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Access Control vulnerability in the /Exago/WrImageResource.adx route as used in Device42 Asset Management Appliance allows an unauthenticated attacker to read sensitive server files with root permissions. This issue affects: Device42 CMDB versions prior to 18.01.00. | Improper Access Control vulnerability in the /Exago/WrImageResource.adx route as used in Device42 Asset Management Appliance allows an unauthenticated attacker to read sensitive server files with root permissions. This issue affects: Device42 CMDB versions prior to 18.01.00. |
Status: PUBLISHED
Assigner: Bitdefender
Published:
Updated: 2024-09-17T02:11:37.189Z
Reserved: 2022-04-19T00:00:00.000Z
Link: CVE-2022-1401
No data.
Status : Modified
Published: 2022-08-17T00:15:08.187
Modified: 2024-11-21T06:40:39.420
Link: CVE-2022-1401
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD