ZeroHour

CVE-2019-12394

CVSS 3.1
9.8 critical
EPSS
2%p81
Published
()
Modified
Description

Anviz access control devices allow unverified password change which allows remote attackers to change the administrator password without prior authentication.

Vendors
anviz
Products
management system
Weakness
CWE-287
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.