Description
The Reporting module in Aseco Lietuva document management system DVS Avilys before 3.5.58 allows unauthorized file download. An unauthenticated attacker can impersonate an administrator by reading administrative files.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-31726 | The Reporting module in Aseco Lietuva document management system DVS Avilys before 3.5.58 allows unauthorized file download. An unauthenticated attacker can impersonate an administrator by reading administrative files. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T05:25:31.109Z
Reserved: 2022-03-15T00:00:00.000Z
Link: CVE-2022-27192
No data.
Status : Modified
Published: 2022-03-23T22:15:13.373
Modified: 2024-11-21T06:55:22.807
Link: CVE-2022-27192
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD