Improper Access Control vulnerability in the /Exago...
High severity
Unreviewed
Published
Aug 18, 2022
to the GitHub Advisory Database
•
Updated Sep 17, 2024
Description
Published by the National Vulnerability Database
Aug 17, 2022
Published to the GitHub Advisory Database
Aug 18, 2022
Last updated
Sep 17, 2024
Improper Access Control vulnerability in the /Exago/WrImageResource.adx route as used in Device42 Asset Management Appliance allows an unauthenticated attacker to read sensitive server files with root permissions. This issue affects: Device42 CMDB versions prior to 18.01.00.
References