CVE-2023-4997
Improper authorisation in Uptime DC
Improper authorisation of regular users in ProIntegra Uptime DC software (versions below 2.0.0.33940) allows them to change passwords of all other users including administrators leading to a privilege escalation.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Productos afectados
ProIntegra S.A. · UptimeDC¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →