CVSSv3 Score: 8.8 AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Severity: High
Synopsis:
U-Series Appliance - Privilege Escalation via Local Appliance API
Impacted Product:
U-Series Appliance
Prior to version 4.0.3, an unprivileged user can use the local appliance API to create an account with administrator privileges or change the password of the btadmin account.
Product | Version |
---|---|
U-Series Appliance | Prior to 4.0.3 |
Product | Version |
---|---|
U-Series Appliance | 4.0.3 |