An issue was discovered in Servisnet Tessa 0.0.2. An attacker can obtain sensitive information via a /js/app.js request.
References
| Link | Resource |
|---|---|
| http://packetstormsecurity.com/files/165867/Servisnet-Tessa-MQTT-Credential-Disclosure.html | Exploit Third Party Advisory VDB Entry |
| http://www.servisnet.com.tr/en/page/products | Product Vendor Advisory |
| https://pentest.com.tr/exploits/Servisnet-Tessa-MQTT-Credentials-Dump-Unauthenticated.html | Exploit Third Party Advisory |
| https://www.exploit-db.com/exploits/50713 | Exploit Third Party Advisory VDB Entry |
Configurations
History
No history.
Information
Published : 2022-02-06 22:15
Updated : 2022-02-10 16:19
NVD link : CVE-2022-22833
Mitre link : CVE-2022-22833
CVE.ORG link : CVE-2022-22833
JSON object : View
Products Affected
servisnet
- tessa
CWE
