CVE-2017-9625

CVE-2017-9625

Vendor N/A
Product Envitech Ltd. EnviDAS Ultimate
Weakness CWE-287 · Improper authentication
Published October 17, 2017
Last update August 5, 2024

CVSS base score

What the vulnerability does

01Description

An Improper Authentication issue was discovered in Envitech EnviDAS Ultimate Versions prior to v1.0.0.5. The web application lacks proper authentication which could allow an attacker to view information and modify settings or execute code remotely.

Key dates

02Disclosure timeline

October 17, 2017 CVE published
August 5, 2024 Record updated