Vulnerability Details CVE-2022-39029
Smart eVision has inadequate authorization for the database query function. A remote attacker with general user privilege, who is not explicitly authorized to access the information, can access sensitive information.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 25.9%
CVSS Severity
CVSS v3 Score 6.5
Products affected by CVE-2022-39029
-
cpe:2.3:a:lcnet:smart_evision:-
-
cpe:2.3:a:lcnet:smart_evision:2022.02.21