CVE-2022-1401
EUVD-2022-2471717.08.2022, 00:15
Improper Access Control vulnerability in the /Exago/WrImageResource.adx route as used in Device42 Asset Management Appliance allows an unauthenticated attacker to read sensitive server files with root permissions. This issue affects: Device42 CMDB versions prior to 18.01.00.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| device42 | cmdb | 𝑥 < 18.01.00 |
𝑥
= Vulnerable software versions