← Back to CVE List
CVE-2022-2105
Client-side JavaScript controls may be bypassed to change user credentials and permissions without authentication, including a “root” user level meant only for the vendor. Web server root level access allows for changing of safety critical parameters.
> MITRE Terms of Use apply – see LICENSE‑MITRE.txt