CVE-2022-39038
10.11.2022, 15:15
Agentflow BPM enterprise management system has improper authentication. A remote attacker with general user privilege can change the name of the user account to acquire arbitrary account privilege, and access, manipulate system or disrupt service.Enginsight
Vendor | Product | Version |
---|---|---|
flowring | agentflow | 4.0.0.1183.552 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References