PT-2020-20460 · Tyco · Exacqvision Enterprise Manager+1
CVSS v2.0
9.0
High
| Vector | AV:N/AC:L/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
exacqVision Web Service versions 20.06.3.0 and prior
exacqVision Enterprise Manager versions 20.06.4.0 and prior
Description
A vulnerability exists that could allow the execution of unauthorized code or operating system commands on systems. An attacker with administrative privileges could potentially download and run a malicious executable that could allow OS command injection on the system.
Recommendations
For exacqVision Web Service versions 20.06.3.0 and prior, update to a version later than 20.06.3.0 to resolve the issue.
For exacqVision Enterprise Manager versions 20.06.4.0 and prior, update to a version later than 20.06.4.0 to resolve the issue.
Exploit
Fix
DoS
Improper Verification of Cryptographic Signature
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Exacqvision Enterprise Manager
Exacqvision Web Service