Description
Avdor CIS - crystal quality Credentials Management Errors. The product is phone call recorder, you can hear all the recorded calls without authenticate to the system. Attacker sends crafted URL to the system: ip:port//V=2;ChannellD=number;Ext=number;Command=startLM;Client=number;Request=number;R=number number - id of the recorded number.
Published: 2022-09-13
Score: 4.9 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

Vendor Solution

Update to the latest version.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2022-39480 Avdor CIS - crystal quality Credentials Management Errors. The product is phone call recorder, you can hear all the recorded calls without authenticate to the system. Attacker sends crafted URL to the system: ip:port//V=2;ChannellD=number;Ext=number;Command=startLM;Client=number;Request=number;R=number number - id of the recorded number.
History

No history.

Subscriptions

Avdorcis Crystal Quality
cve-icon MITRE

Status: PUBLISHED

Assigner: INCD

Published:

Updated: 2024-09-17T02:36:24.508Z

Reserved: 2022-07-26T00:00:00.000Z

Link: CVE-2022-36780

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-09-13T15:15:08.667

Modified: 2024-11-21T07:13:41.950

Link: CVE-2022-36780

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses