CVE-2022-36170

Severity CVSS v4.0:
Pending analysis
Type:
CWE-798 Use of Hard-coded Credentials
Publication date:
19/08/2022
Last modified:
23/08/2022

Description

MapGIS 10.5 Pro IGServer has hardcoded credentials in the front-end and can lead to escalation of privileges and arbitrary file deletion.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:mapgis:igserver:10.5:*:*:*:pro:*:*:*