Elcomplus SmartPTT is vulnerable when a low-authenticated user can access higher level administration authorization by issuing requests directly to the desired endpoints.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Smartptt_scada |
Smartptt |
1.1 (including) |
1.1 (including) |
References