Double URL Submission Vulnerability in NVS365 V01

Double URL Submission Vulnerability in NVS365 V01

CVE-2022-47070 · HIGH Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

NVS365 V01 is vulnerable to Incorrect Access Control. After entering a wrong password, the url will be sent to the server twice. In the second package, the server will return the correct password information.

Learn more about our Cis Benchmark Audit For Server Software.