Vulnerability Details CVE-2022-39029
Smart eVision has inadequate authorization for the database query function. A remote attacker with general user privilege, who is not explicitly authorized to access the information, can access sensitive information.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 44.5%
CVSS Severity
CVSS v3 Score 6.5
Products affected by CVE-2022-39029
-
cpe:2.3:a:lcnet:smart_evision:-
-
cpe:2.3:a:lcnet:smart_evision:2022.02.21