EasyVirt DCScope <=8.6.0 and CO2Scope <=1.3.0 are...
Critical severity
Unreviewed
Published
Feb 1, 2025
to the GitHub Advisory Database
•
Updated Feb 3, 2025
Description
Published by the National Vulnerability Database
Jan 31, 2025
Published to the GitHub Advisory Database
Feb 1, 2025
Last updated
Feb 3, 2025
EasyVirt DCScope <=8.6.0 and CO2Scope <=1.3.0 are vulnerable to privilege escalation as the password token suffers from weak encryption making it possible to brute-force the password token.
References