CVE Published: 18/04/2024 |
CVE Updated: 01/08/2024 |
CVE Year: 2024 Source: icscert |
Vendor: Electrolink |
Product: Compact DAB Transmitter Status : PUBLISHED
CVE-2024-22179 Description
The application is vulnerable to an unauthenticated parameter
manipulation that allows an attacker to set the credentials to blank
giving her access to the admin panel. Also vulnerable to account
takeover and arbitrary password change.
Metrics
CVSS Version: 3.1 |
Base Score: 7.5 HIGH Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N