The login interface on TNLSoftSolutions Sentry Vision 3.x devices provides password disclosure by reading an "if(pwd ==" line in the HTML source code. This means, in effect, that authentication occurs only on the client side.
References
Link | Resource |
---|---|
https://gist.github.com/pabloonicarres/c2c284ca7b025d629da39087445ed15d#file-sentryvision_authentication_bypass-sh | Exploit Third Party Advisory |
https://www.youtube.com/watch?v=pLMH9vGPRCo | Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2018-03-29T16:00:00
Updated: 2018-03-29T15:57:01
Reserved: 2018-03-26T00:00:00
Link: CVE-2018-9031
JSON object: View
NVD Information
Status : Analyzed
Published: 2018-03-29T16:29:00.207
Modified: 2019-10-03T00:03:26.223
Link: CVE-2018-9031
JSON object: View
Redhat Information
No data.
CWE