Bentley eB System Management Console applications within Assetwise Integrity Information Server allow an unauthenticated user to view configuration options via a crafted request, leading to information disclosure. This affects eB System management Console before 23.00.02.03 and Assetwise ALIM For Transportation before 23.00.01.25.
2023-12-22T02:15:43.060
2024-11-21T08:38:38.910
Modified
CVSSv3.1: 8.6 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | bentley | assetwise_alim_for_transportation | < 23.00.01.25 | Yes |
Application | bentley | eb_system_management_console | < 23.00.02.03 | Yes |