CVE-2022-26671
07.04.2022, 19:15
Taiwan Secom Dr.ID Access Control systems login page has a hard-coded credential in the source code. An unauthenticated remote attacker can use the hard-coded credential to acquire partial system information and modify system setting to cause partial disrupt of service.Enginsight
Vendor | Product | Version |
---|---|---|
secom | dr.id_access_control | 3.3.2 |
secom | dr.id_attendance_system | 3.4.0.0.3.11 |
𝑥
= Vulnerable software versions