CVE-2022-26671
07.04.2022, 19:15
Taiwan Secom Dr.ID Access Control systems login page has a hard-coded credential in the source code. An unauthenticated remote attacker can use the hard-coded credential to acquire partial system information and modify system setting to cause partial disrupt of service.Enginsight
| Vendor | Product | Version |
|---|---|---|
| secom | dr.id_access_control | 3.3.2 |
| secom | dr.id_attendance_system | 3.4.0.0.3.11 |
𝑥
= Vulnerable software versions