Vulnerabilities > Novastar > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-07-12 CVE-2021-38289 Incorrect Permission Assignment for Critical Resource vulnerability in Novastar Novaicare 7.16.0
An issue has been discovered in Novastar-VNNOX-iCare Novaicare 7.16.0 that gives attacker privilege escalation and allows attackers to view corporate information and SMTP server details, delete users, view roles, and other unspecified impacts.
network
low complexity
novastar CWE-732
6.5