VYPR
Critical severity9.8NVD Advisory· Published Apr 28, 2022· Updated Jun 17, 2026

CVE-2022-28719

CVE-2022-28719

Description

Missing authentication for critical function in AssetView prior to Ver.13.2.0 allows a remote unauthenticated attacker with some knowledge on the system configuration to upload a crafted configuration file to the managing server, which may result in the managed clients to execute arbitrary code with the administrative privilege.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Hammock/Assetview2 versions
    cpe:2.3:a:hammock:assetview:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:hammock:assetview:*:*:*:*:*:*:*:*range: <13.2.0
    • (no CPE)range: prior to Ver.13.2.0
  • Range: <13.2.0

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.