Back

CRITICAL

Escalation of privileges in EnergyCAP 7 through 7.5.6 allows an attacker to access data

Published Nov 8, 2019

Description

Escalation of privileges in EnergyCAP 7 through 7.5.6 allows an attacker to access data. If an unauthenticated user clicks on a link on the public dashboard, the resource opens in EnergyCAP with access rights matching the user who created the dashboard.

Affected products

Remediation

No remediation recorded yet.

References (3)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Nov 8, 2019
Updated Aug 5, 2024
Reserved Oct 29, 2019
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner mitre
Published Nov 8, 2019
Updated Aug 5, 2024
Exploited since n/a
EUVD-2019-8347