Home
CRITICAL: 9.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:L/SA:LDefault status
affected
Any version
affected
Description
E2 Facility Management Systems use a proprietary protocol that allows for unauthenticated file operations on any file in the file system.
Problem types
CWE-306 Missing Authentication for Critical Function
Product status
Any version
Credits
Armis Labs
References
www.armis.com/research/frostbyte10/