ZeroHour

CVE-2019-15088

CVSS 3.1
9.8 critical
EPSS
2%p76
Published
()
Modified
Description

An issue was discovered in PRiSE adAS 1.7.0. Password hashes are compared using the equality operator. Thus, under specific circumstances, it is possible to bypass login authentication.

Vendors
prise
Products
adas
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.