CVE-2019-14480

AdRem NetCrunch 10.6.0.4587 has an Improper Session Handling vulnerability in the NetCrunch web client, which can lead to an authentication bypass or escalation of privileges.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:adremsoft:netcrunch:*:*:*:*:*:*:*:*

Information

Published : 2020-12-16 08:15

Updated : 2021-07-21 04:39


NVD link : CVE-2019-14480

Mitre link : CVE-2019-14480


JSON object : View

CWE
CWE-522

Insufficiently Protected Credentials

CWE-311

Missing Encryption of Sensitive Data

CWE-200

Exposure of Sensitive Information to an Unauthorized Actor

CWE-338

Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)

CWE-732

Incorrect Permission Assignment for Critical Resource

Advertisement

dedicated server usa

Products Affected

adremsoft

  • netcrunch