CyberSec.Space Logo
返回 CVE 浏览器

CVE-2019-11232

CRITICAL
9.8
CVSS Severity Score
EPSS Score0.0760%
EPSS Percentile1.26th
Published2019年6月19日
Last Modified2024年11月21日

Vulnerability Description

EXCELLENT INFOTEK BiYan v1.57 ~ v2.8 allows an attacker to leak user information (Password) without being authenticated, by sending an EMP_NO element to the kws_login/asp/query_user.asp URI, and then reading the PWD element.

Affected Platforms (CPE)

📦
Eic

Biyan

>= 1.57 and <= 2.8

References & Advisories

相关漏洞威胁