Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A hard-coded cryptographic key is used in FileWave before 14.6.3 and 14.7.x before 14.7.2. Exploitation could allow an unauthenticated actor to decrypt sensitive information saved in FileWave, and even send crafted requests.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
FileWave 信任管理问题漏洞
Vulnerability Description
FileWave是瑞士FileWave公司的一种端点管理套件。 FileWave存在安全漏洞,该漏洞源于未经身份验证的攻击者可以利用硬编码的加密密钥解密保存在FileWave中的敏感信息,甚至发送精心设计的请求。以下版本受到影响:14.6.3之前的版本、14.7.x在14.7.2之前的版本。
CVSS Information
N/A
Vulnerability Type
N/A