CVE-2022-28719
28.04.2022, 09:15
Missing authentication for critical function in AssetView prior to Ver.13.2.0 allows a remote unauthenticated attacker with some knowledge on the system configuration to upload a crafted configuration file to the managing server, which may result in the managed clients to execute arbitrary code with the administrative privilege.Enginsight
Vendor | Product | Version |
---|---|---|
hammock | assetview | 𝑥 < 13.2.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration