Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Elcomplus SmartPtt Improper Authorization
Vulnerability Description
Elcomplus SmartPTT is vulnerable when a low-authenticated user can access higher level administration authorization by issuing requests directly to the desired endpoints.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Vulnerability Type
授权机制不恰当
Vulnerability Title
Elcomplus SmartPPT 安全漏洞
Vulnerability Description
Elcomplus SmartPPT是美国Elcomplus公司的一个集成语音和数据调度软件。 Elcomplus SmartPPT存在授权问题漏洞,该漏洞源于低身份验证用户可以通过直接向所需端点发出请求来访问更高级别的管理授权。
CVSS Information
N/A
Vulnerability Type
N/A