An improper password check exists in the login functionality of WWBN AVideo 11.6 and dev master commit 3f7c0364. An attacker that owns a users' password hash will be able to use it to directly login into the account, leading to increased privileges.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: talos
Published: 2022-08-22T18:25:14.535222Z
Updated: 2024-09-16T18:28:30.636Z
Reserved: 2022-06-13T00:00:00
Link: CVE-2022-32282
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-08-22T19:15:10.153
Modified: 2024-11-21T07:06:05.890
Link: CVE-2022-32282
Redhat
No data.