CVE-2022-24610

CVSS v3 Score
8.6
High
CVSS v2 Score
5.0
Medium

Vulnerability Description

Settings/network settings/wireless settings on the Alecto DVC-215IP camera version 63.1.1.173 and below shows the Wi-Fi passphrase hidden, but by editing/removing the style of the password field the password becomes visible which grants access to an internal network connected to the camera.

CVSS:8.6(High)

Kyocera multifunction printers running vulnerable versions of Net View unintentionally expose sensitive user information, including usernames and passwords, through an insufficiently protected address...

CVSS:8.7(High)

Authenticated, administrative access to a Barracuda Load Balancer ADC running unpatched firmware <= v6.4 allows one to edit the LDAP service configuration of the balancer and change the LDAP server to...

CVSS:8.5(High)

Hitachi Vantara Pentaho Data Integration & Analytics versions before 10.1.0.0 and 9.3.0.8, including 8.3.x, discloses database passwords when searching metadata injectable fields.

CVSS:8.7(High)

A passback vulnerability which relates to production printers and office multifunction printers.

CVSS:8.7(High)

A passback vulnerability which relates to office/small office multifunction printers and laser printers.

CVSS:8.4(High)

Stolen credentials from SSH clients via ssh-agent program, allowing other local users to access remote accounts belonging to the ssh-agent user.