CyberSec.Space Logo
返回 CVE 浏览器

CVE-2019-11233

HIGH
7.5
CVSS Severity Score
EPSS Score0.1380%
EPSS Percentile21.98th
Published2019年6月19日
Last Modified2024年11月21日

Vulnerability Description

EXCELLENT INFOTEK BiYan v1.57 ~ v2.8 allows an attacker to leak user information without being authenticated, by sending a LOGIN_ID element to the auth/main/asp/check_user_login_info.aspx URI, and then reading the response, as demonstrated by the KW_EMAIL or KW_TEL field.

Affected Platforms (CPE)

📦
Eic

Biyan

>= 1.57 and <= 2.8

References & Advisories

相关漏洞威胁