Back

HIGH

RONDS EPM version 1.19.5 has a vulnerability in which a function could

Published Jan 17, 2023

Description

RONDS EPM version 1.19.5 has a vulnerability in which a function could allow unauthenticated users to leak credentials. In some circumstances, an attacker can exploit this vulnerability to execute operating system (OS) commands.

Affected products

Remediation

Vendor solution

RONDS provides the software to users that purchase their products and recommends users upgrade the software to version 1.35.21.

References (2)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner icscert
Published Jan 17, 2023
Updated Jan 16, 2025
Reserved Sep 1, 2022
CISA Vulnrichment
Updated Jan 16, 2025
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner icscert
Published Jan 17, 2023
Updated Jan 16, 2025
Exploited since n/a
EUVD-2022-42520