CVE-2019-13352

CVE-2019-13352

WolfVision Cynap before 1.30j uses a static, hard-coded cryptographic secret for generating support PINs for the ‘forgot password’ feature. By knowing this static secret and the corresponding algorithm for calculating support PINs, an attacker can reset the ADMIN password and thus gain remote access.

Source: CVE-2019-13352

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다