CVE-2019-14453

An issue was discovered in Comelit "App lejos de casa (web)" 2.8.0. It allows privilege escalation via modified domus and logged fields, related to js/bridge.min.js and login.json. For example, an attacker can achieve high privileges (installer or administrator) for the graphical interface via a 1C000000000S value for domus, in conjunction with a zero value for logged.
References
Link Resource
https://www.blogx86.net/2021/07/26/cve-2019-14453/ Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:comelitgroup:away_from_home:2.8.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2021-08-03 18:15

Updated : 2021-08-11 12:58


NVD link : CVE-2019-14453

Mitre link : CVE-2019-14453

CVE.ORG link : CVE-2019-14453


JSON object : View

Products Affected

comelitgroup

  • away_from_home
CWE
CWE-269

Improper Privilege Management