| |
Podatność CVE-2022-46308
Publikacja: 2023-06-02
Opis: |
SGUDA U-Lock central lock control service??s user management function has incorrect authorization. A remote attacker with general user privilege can exploit this vulnerability to call privileged APIs to access, modify and delete user information. |
Typ:
CWE-863 (Incorrect Authorization)
Referencje: |
https://www.twcert.org.tw/tw/cp-132-7100-7a15c-1.html
|
|
|
Copyright 2024, cxsecurity.com
|
|
|