CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. See the original NVD description below for full technical details.
CVE
CVE-2022-31887
Severity
CRITICAL
CVSS
9.8
EPSS
1.51%
Original NVD Description
Marval MSM v14.19.0.12476 has a 0-Click Account Takeover vulnerability which allows an attacker to change any user's password in the organization, this means that the user can also escalate achieve Privilege Escalation by changing the administrator password.
Related CVEs
Other vulnerabilities affecting the same vendor(s)