CVE-2016-2296
—CVSS 3.0
9.4 critical
EPSS
64%p99
Published
()
Modified
Description
Meteocontrol WEB'log Basic 100, Light, Pro, and Pro Unlimited does not require authentication for "post-admin" login pages, which allows remote attackers to obtain sensitive information or modify data via unspecified vectors.
- Vendors
- meteocontrol
- Products
- web\'log basic 100, web\'log light, web\'log pro, web\'log pro unlimited
- Weakness
- CWE-254
- Vector
- CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L
In the news0 stories
No ingested article mentions this CVE yet.