ID

VAR-202203-2122


TITLE

KingView (KingView) has a logic flaw vulnerability

Trust: 0.6

sources: CNVD: CNVD-2022-13895

DESCRIPTION

KingView (KingView) is the flagship brand in the field of equipment monitoring in China. It has the characteristics of complete functions, simple, easy to learn, and easy to use. Its products are widely used in dozens of industries such as electric power, machinery, municipal administration, energy, environmental protection, and medicine. Hundreds of equipment supporting monitoring such as low-voltage power distribution, hoisting machinery, vacuum furnace, heat exchange station, fan power generation, dust blowing and dust removal, air separation equipment, pharmaceutical freeze dryer and so on. There is a logic flaw vulnerability in KingView, an attacker can use this vulnerability to overwrite and delete any file.

Trust: 0.6

sources: CNVD: CNVD-2022-13895

IOT TAXONOMY

category:['ICS']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2022-13895

AFFECTED PRODUCTS

vendor:asia controlmodel:kingview sp4scope:eqversion:7.5

Trust: 0.6

sources: CNVD: CNVD-2022-13895

CVSS

SEVERITY

CVSSV2

CVSSV3

CNVD: CNVD-2022-13895
value: LOW

Trust: 0.6

CNVD: CNVD-2022-13895
severity: LOW
baseScore: 3.6
vectorString: AV:L/AC:L/AU:N/C:N/I:P/A:P
accessVector: LOCAL
accessComplexity: LOW
authentication: NONE
confidentialityImpact: NONE
integrityImpact: PARTIAL
availabilityImpact: PARTIAL
exploitabilityScore: 3.9
impactScore: 4.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

sources: CNVD: CNVD-2022-13895

PATCH

title:A patch for a logic flaw vulnerability in KingViewurl:https://www.cnvd.org.cn/patchinfo/show/320626

Trust: 0.6

sources: CNVD: CNVD-2022-13895

EXTERNAL IDS

db:CNVDid:CNVD-2022-13895

Trust: 0.6

sources: CNVD: CNVD-2022-13895

SOURCES

db:CNVDid:CNVD-2022-13895

LAST UPDATE DATE

2023-11-21T05:25:31.622000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2022-13895date:2022-06-13T00:00:00

SOURCES RELEASE DATE

db:CNVDid:CNVD-2022-13895date:2022-03-04T00:00:00