High severity7.5NVD Advisory· Published Sep 16, 2022· Updated Jun 17, 2026
CVE-2022-3217
CVE-2022-3217
Description
When logging in to a VBASE runtime project via Web-Remote, the product uses XOR with a static initial key to obfuscate login messages. An unauthenticated remote attacker with the ability to capture a login session can obtain the login credentials.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- VBASE/VBASE runtime projectdescription
Patches
Vulnerability mechanics
References
1- www.tenable.com/security/research/tra-2022-31nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.