← voltar
CVE-2017-20109

Teleopti WFM Administration GetOneTenant Credentials information disclosure

CVSS 4.3 MEDIUMEPSS 0.5%CWE-200
Vexday Risk Score
13Baixo
Decisão SSVC (CISA)
Track
Sem sinal de exploração → monitorar
CVSS 4.3EPSS 0.5%KEV nãoPoC Nuclei Metasploit Patch
Ciclo de vida
29 jun 2022Publicada no NVD
Recomendação: Monitorar — sem sinal de exploração no momento.
A vulnerability classified as problematic was found in Teleopti WFM up to 7.1.0. Affected by this vulnerability is an unknown functionality of the file /TeleoptiWFM/Administration/GetOneTenant of the component Administration. The manipulation leads to information disclosure (Credentials). The attack can be launched remotely. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Produtos afetados
Teleopti · WFM

Quer saber se a sua infraestrutura está exposta a isto?

Falar com a TrueHacking →