7.5
CVSSv3

CVE-2022-3217

Published: 16/09/2022 Updated: 21/09/2022
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

When logging in to a VBASE runtime project via Web-Remote, the product uses XOR with a static initial key to obfuscate login messages. An unauthenticated remote attacker with the ability to capture a login session can obtain the login credentials.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

visam vbase 11.7.0.2