Vulnerabilities > CVE-2021-44161 - Unspecified vulnerability in Changingtec Motp
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Changing MOTP (Mobile One Time Password) system’s specific function parameter has insufficient validation for user input. A attacker in local area network can perform SQL injection attack to read, modify or delete backend database without authentication.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |