CVE-2020-9002
01.09.2021, 11:15
An issue was discovered in iPortalis iCS 7.1.13.0. An attacker can gain privileges by intercepting a request and changing UserRoleKey=COMPANY_ADMIN to UserRoleKey=DOMAIN_ADMIN (to achieve Domain Administrator access).Enginsight
Vendor | Product | Version |
---|---|---|
iportalis | iportalis_control_portal | 7.1.13.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration