Description
Under certain circumstances an unauthenticated user could access the the web API for Metasys ADS/ADX/OAS 10 versions prior to 10.1.6 and 11 versions prior to 11.0.2 and enumerate users.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
Vendor Solution
Update all Metasys ADS/ADX/OAS 10 versions with patch 10.1.6
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-22821 | Under certain circumstances an unauthenticated user could access the the web API for Metasys ADS/ADX/OAS 10 versions prior to 10.1.6 and 11 versions prior to 11.0.2 and enumerate users. |
References
History
No history.
Status: PUBLISHED
Assigner: jci
Published:
Updated: 2024-09-16T17:07:41.371Z
Reserved: 2021-07-06T00:00:00.000Z
Link: CVE-2021-36200
No data.
Status : Modified
Published: 2022-07-22T15:15:07.910
Modified: 2024-11-21T06:13:18.243
Link: CVE-2021-36200
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD