CVE-2022-3091
Severity CVSS v4.0:
Pending analysis
Type:
CWE-200
Information Leak / Disclosure
Publication date:
17/01/2023
Last modified:
07/11/2023
Description
RONDS EPM version 1.19.5 has a vulnerability in which a function could <br />
allow unauthenticated users to leak credentials. In some circumstances, <br />
an attacker can exploit this vulnerability to execute operating system <br />
(OS) commands. <br />
<br />
<br />
<br />
Impact
Base Score 3.x
7.50
Severity 3.x
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:ronds:equipment_predictive_maintenance:1.19.5:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



