CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 7.1. See the original NVD description below for full technical details.
CVE
CVE-2022-1400
Severity
HIGH
CVSS
7.1
EPSS
0.69%
Original NVD Description
Use of Hard-coded Cryptographic Key vulnerability in the WebReportsApi.dll of Exago Web Reports, as used in the Device42 Asset Management Appliance, allows an attacker to leak session IDs and elevate privileges. This issue affects: Device42 CMDB versions prior to 18.01.00.
Related CVEs
Other vulnerabilities affecting the same vendor(s)