PT-2019-17848 · Overit · Overit Geocall
CVE-2019-5890
·
Publicado
2019-04-01
·
Atualizado
2022-10-14
CVSS v2.0
9.0
Alta
| Vetor | AV:N/AC:L/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
OverIT Geocall version 6.3 before build 2:346977
Description
An issue in OverIT Geocall allows an authenticated user to obtain access to the Administrative control panel and execute administrative functions due to weak authentication and session management.
Recommendations
For OverIT Geocall version 6.3 before build 2:346977, update to a version that includes build 2:346977 or later to resolve the issue. As a temporary workaround, consider restricting access to the Administrative control panel to minimize the risk of exploitation.
Correção
Improper Authentication
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Overit Geocall