go to Content
:::

TWCERT/CC Taiwan Computer Emergency Response Team/Coordination Center

:::
Date:
Font-stze:

Netvision ISOinsight - Missing Authentication

TVN ID TVN-202505012
CVE ID CVE-2025-4560
CVSS 6.5 (Medium)
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Affected Products ISOinsight v2.9.0.x, v3.0.0.x
Description The ISOinsight from Netvision has a Missing Authentication vulnerability, allowing unauthenticated remote attackers to access certain system functions. These functions include viewing the administrator list, viewing and editing IP settings, and uploading files.
Solution For v2.9.0.x, please update to version 2.9.0.250501 or later
For v3.0.0.x, please update to version 3.0.0.250501 or later
Credit Security member
Public Date 2025-05-12
Top