PT-2026-68897 · Tobit Laboratories Ag · Teamdavid
CVSS v4.0
6.9
Medium
| Vector | AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:L/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions
TeamDavid versions prior to Rollout 525
Description
Tobit Laboratories AG TeamDavid's Webbox fails to enforce authentication or authorization checks when serving log files. This allows attackers to access sensitive error information and internal application details, which can be used to facilitate further attacks.
Recommendations
Update TeamDavid to a version later than Rollout 524.
Fix
Missing Authorization
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Teamdavid