CRITICAL
Because the web management interface for Unified Intents' Unified Remote solution does not itself require authentication, a remote, unauthenticated attacker can change or disable authentication requirements for the Unified Remote protocol, and leverage this now-unauthenticated access to run code of the attacker's choosing
Published Feb 6, 2023
9.8
CRITICALCVSS 3.1
EPSS 66.35%
Description
Affected products
Remediation
References (1)
Change history (0)
No recorded changes yet.