The login interface on TNLSoftSolutions Sentry Vision 3.x devices provides password disclosure by reading an "if(pwd ==" line in the HTML source code. This means, in effect, that authentication occurs only on the client side.
References
Link | Resource |
---|---|
https://gist.github.com/pabloonicarres/c2c284ca7b025d629da39087445ed15d#file-sentryvision_authentication_bypass-sh | Exploit Third Party Advisory |
https://www.youtube.com/watch?v=pLMH9vGPRCo | Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2018-03-29 16:29
Updated : 2024-02-04 19:46
NVD link : CVE-2018-9031
Mitre link : CVE-2018-9031
CVE.ORG link : CVE-2018-9031
JSON object : View
Products Affected
tnlsoftsolutions
- sentry_vision
CWE
CWE-522
Insufficiently Protected Credentials