Skip to content

jeyabalaji711/CVE-2024-42919

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

2 Commits
 
 

Repository files navigation

eScan Management Console

Exploit Title : eScan Management Console - Incorrect Access Control
Author : Jeyabalaji
Affected Versions : 14.0.1400.2281
Tested on : Windows 11
CVE : CVE-2024-42919

Description:

The Escan Management Console implements authentication mechanisms; however, the acteScanAVReport endpoint is accessible without requiring any authentication.

Payload :

acteScanAVReport (Endpoint)

Steps to reproduce :

  1. Open eScan Management Console
  2. Give 'acteScanAVReport' Endpoint
  3. We can able to access the eScan AV Report

Mitigation :

Update to the latest version

About

No description, website, or topics provided.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published