← Späť na vyhľadávanie CVE

CVE-2026-46459

ICU Scandinavia Boomerang

Popis

ICU Scandinavia Boomerang is vulnerable to a missing authentication flaw in its device receiver endpoints. This allows an unauthenticated remote attacker to read full facility configurations and write unauthorized data to the sensor database. This issue has been fixed in version 2.4.18.029

CVSS 5.3EPSS 0.28800000000000003%Riziko 0.54
Zobraziť zdroj
Zverejnené
2026-07-15 13:17:22
Dotknuté verzie
<2.4.18.029
Typ
Webová aplikácia
Vektor
CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X