manipulation that allows an attacker to set the credentials to blank
giving her access to the admin panel. Also vulnerable to account
takeover and arbitrary password change.
Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Workaround
Electrolink has not responded to requests to work with CISA to mitigate these vulnerabilities. Users of the affected products are encouraged to contact Electrolink https://electrolink.com/contacts/ for additional information.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-19775 | The application is vulnerable to an unauthenticated parameter manipulation that allows an attacker to set the credentials to blank giving her access to the admin panel. Also vulnerable to account takeover and arbitrary password change. |
No history.
Subscriptions
No data.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2024-08-01T22:35:34.937Z
Reserved: 2024-01-05T22:07:42.998Z
Link: CVE-2024-22179
Updated: 2024-08-01T22:35:34.937Z
Status : Deferred
Published: 2024-04-18T22:15:09.850
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-22179
No data.
OpenCVE Enrichment
No data.
EUVD