Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2022-1400

Use of Hard-coded Cryptographic Key vulnerability in the WebReportsApi.dll of Exago Web Reports, as used in the Device42 Asset Management Appliance, allows an attacker to leak session IDs and elevate privileges. This issue affects: Device42 CMDB versions prior to 18.01.00.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 25.4%
CVSS Severity
CVSS v3 Score 7.1
Products affected by CVE-2022-1400
  • Device42 » Cmdb » Version: N/A
    cpe:2.3:a:device42:cmdb:-


Contact Us

Shodan ® - All rights reserved