Required CVE Record Information
Description
smart eVision has inadequate authorization for system information query function. An unauthenticated remote attacker, who is not explicitly authorized to access the information, can access sensitive information.
CVSS 1 Total
Score | Severity | Version | Vector String |
---|---|---|---|
7.5 | HIGH | 3.1 | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
References 1 Total
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 1 Total
- https://www.twcert.org.tw/tw/cp-132-6567-01fa3-1.html x_transferred