An issue was discovered on Olivetti d-COLOR MF3555 2XD_S000.002.271 devices. The Web Application is affected by Broken Access Control. It does not properly validate requests for access to data and functionality under the /mngset/authset path. By not verifying permissions for access to resources, it allows a potential attacker to view pages that are not allowed.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.gruppotim.it/it/footer/red-team.html |
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2022-04-20T12:51:47
Updated: 2024-08-03T04:36:06.893Z
Reserved: 2022-02-18T00:00:00
Link: CVE-2022-25342
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-04-20T13:15:07.590
Modified: 2024-11-21T06:52:02.360
Link: CVE-2022-25342
Redhat
No data.