CVE-2022-25782: Insufficient privilege checks on object access and updates.
Improper Handling of Insufficient Privileges vulnerability in Web UI of Secomea GateManager allows logged in user to access and update privileged information. This issue affects: Secomea GateManager versions prior to 9.7.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-25782?
CVE-2022-25782 is an Improper Handling of Insufficient Privileges vulnerability in the Web UI of Secomea GateManager that allows a logged in user to access and update privileged information.
Which versions of Secomea GateManager are affected by CVE-2022-25782?
CVE-2022-25782 affects Secomea GateManager versions prior to 9.7.
How severe is CVE-2022-25782?
CVE-2022-25782 has a severity rating of 5.4 (medium).
How can I fix the CVE-2022-25782 vulnerability?
To fix the CVE-2022-25782 vulnerability, update your Secomea GateManager to version 9.7 or later.
Where can I find more information about CVE-2022-25782?
You can find more information about CVE-2022-25782 on the Secomea website: https://www.secomea.com/support/cybersecurity-advisory/