Vulnerability identifier: #VU24496
Vulnerability risk: Medium
Exploitation vector: Network
Exploit availability: No
The vulnerability allows a remote non-authenticated attacker to manipulate data.
The vulnerability exists due to improper input validation within the Mobile Application Framework component in Instantis EnterpriseTrack. A remote non-authenticated attacker can send specially crafted HTTP request and manipulate data within the application.
Install updates from vendor's website.
Vulnerable software versions
Instantis EnterpriseTrack: 17.1 - 17.3
Can this vulnerability be exploited remotely?
Is there known malware, which exploits this vulnerability?