An issue was discovered in Comelit "App lejos de casa (web)" 2.8.0. It allows privilege escalation via modified domus and logged fields, related to js/bridge.min.js and login.json. For example, an attacker can achieve high privileges (installer or administrator) for the graphical interface via a 1C000000000S value for domus, in conjunction with a zero value for logged.
References
Link Resource
https://www.blogx86.net/2021/07/26/cve-2019-14453/ Exploit Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2021-08-03T17:37:31

Updated: 2021-08-03T17:37:31

Reserved: 2019-07-31T00:00:00


Link: CVE-2019-14453

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-08-03T18:15:07.913

Modified: 2021-08-11T12:58:51.210


Link: CVE-2019-14453

JSON object: View

cve-icon Redhat Information

No data.

CWE