vendor:
Netmonitor
by:
Ismail Tasdelen
N/A
CVSS
N/A
Use of Hard-coded Credentials
798
CWE
Product Name: Netmonitor
Affected Version From: Netmonitor v3.03
Affected Version To: Netmonitor v3.03
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
2019
Heatmiser Netmonitor 3.03 – Hardcoded Credentials
Hard-coded Credentials security vulnerability of Netmonitor model v3.03 from Heatmiser manufacturer has been discovered. With this vulnerability, the hidFrm form in the source code of the page anonymously has access to hidden input codes. This information is contained in the input field of the hidFrm form in the source code lognm and logpd.
Mitigation:
Unknown