Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2019-11233

EXCELLENT INFOTEK BiYan v1.57 ~ v2.8 allows an attacker to leak user information without being authenticated, by sending a LOGIN_ID element to the auth/main/asp/check_user_login_info.aspx URI, and then reading the response, as demonstrated by the KW_EMAIL or KW_TEL field.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 63.9%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 5.0
Products affected by CVE-2019-11233
  • Eic » Biyan » Version: 1.57
    cpe:2.3:a:eic:biyan:1.57
  • Eic » Biyan » Version: 2.8
    cpe:2.3:a:eic:biyan:2.8


Contact Us

Shodan ® - All rights reserved