First published: Thu Apr 18 2024(Updated: )
The application is vulnerable to an unauthenticated parameter manipulation that allows an attacker to set the credentials to blank giving her access to the admin panel. Also vulnerable to account takeover and arbitrary password change.
Credit: ics-cert@hq.dhs.gov
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.