Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2022-3217

When logging in to a VBASE runtime project via Web-Remote, the product uses XOR with a static initial key to obfuscate login messages. An unauthenticated remote attacker with the ability to capture a login session can obtain the login credentials.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 47.4%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2022-3217
  • Visam » Vbase » Version: 11.7.0.2
    cpe:2.3:a:visam:vbase:11.7.0.2


Contact Us

Shodan ® - All rights reserved