Description
Missing authentication for critical function in AssetView prior to Ver.13.2.0 allows a remote unauthenticated attacker with some knowledge on the system configuration to upload a crafted configuration file to the managing server, which may result in the managed clients to execute arbitrary code with the administrative privilege.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-33161 | Missing authentication for critical function in AssetView prior to Ver.13.2.0 allows a remote unauthenticated attacker with some knowledge on the system configuration to upload a crafted configuration file to the managing server, which may result in the managed clients to execute arbitrary code with the administrative privilege. |
References
History
No history.
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2024-08-03T06:03:52.606Z
Reserved: 2022-04-14T00:00:00.000Z
Link: CVE-2022-28719
No data.
Status : Modified
Published: 2022-04-28T09:15:08.107
Modified: 2024-11-21T06:57:48.050
Link: CVE-2022-28719
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD