Description
Smart eVision has inadequate authorization for the database query function. A remote attacker with general user privilege, who is not explicitly authorized to access the information, can access sensitive information.
No analysis available yet.
Remediation
Vendor Solution
Contact tech support from Smart eVision Information Technology Inc.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-41575 | Smart eVision has inadequate authorization for the database query function. A remote attacker with general user privilege, who is not explicitly authorized to access the information, can access sensitive information. |
References
| Link | Providers |
|---|---|
| https://www.twcert.org.tw/tw/cp-132-6566-3805b-1.html |
|
History
Wed, 21 May 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2025-05-21T14:53:58.484Z
Reserved: 2022-08-30T00:00:00.000Z
Link: CVE-2022-39029
Updated: 2024-08-03T11:10:32.437Z
Status : Modified
Published: 2022-09-28T04:15:14.443
Modified: 2024-11-21T07:17:24.520
Link: CVE-2022-39029
No data.
OpenCVE Enrichment
No data.
EUVD