CVE-2022-39801
https://notcve.org/view.php?id=CVE-2022-39801
SAP GRC Access control Emergency Access Management allows an authenticated attacker to access a Firefighter session even after it is closed in Firefighter Logon Pad. This attack can be launched only within the firewall. On successful exploitation the attacker can gain access to admin session and completely compromise the application. SAP GRC Access control Emergency Access Management permite a un atacante autenticado acceder a una sesión de Firefighter incluso después de haberla cerrado en Firefighter Logon Pad. Este ataque sólo puede lanzarse dentro del firewall. • https://launchpad.support.sap.com/#/notes/3237075 https://www.sap.com/documents/2022/02/fa865ea4-167e-0010-bca6-c68f7e60039b.html • CWE-287: Improper Authentication •
CVE-2019-6330
https://notcve.org/view.php?id=CVE-2019-6330
A potential security vulnerability has been identified in the software solution HP Access Control versions prior to 16.7. This vulnerability could potentially grant elevation of privilege. Se ha identificado una potencial vulnerabilidad de seguridad en la solución de software de HP Access Control versiones anteriores a 16.7. Esta vulnerabilidad podría otorgar potencialmente una elevación de privilegios. • https://support.hp.com/in-en/document/c06463137 •
CVE-2015-2118
https://notcve.org/view.php?id=CVE-2015-2118
Unspecified vulnerability in the Secure Pull Print and Security Pull Print components in HP Access Control (AC) Software 12.x through 14.x before 14.1.2 allows remote authenticated users to obtain sensitive information via unknown vectors. Vulnerabilidad no especificada en los componentes Secure Pull Print y Security Pull Print en Software HP Access Control (AC) Software 12.x hasta 14.x anterior a 14.1.2 permite a usuarios remotos autenticados obtener información sensible a través de vectores desconocidos. • https://h20564.www2.hp.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04649315 •