CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. It may be remotely exploitable.
CVE
CVE-2019-12394
Severity
CRITICAL
CVSS
9.8
EPSS
2.10%
Original NVD Description
Anviz access control devices allow unverified password change which allows remote attackers to change the administrator password without prior authentication.
Related CVEs
Other vulnerabilities affecting the same vendor(s)