SALTO ProAccess Space
cpe:2.3:a:saltosystem:proaccess_space:*:*:*:*:*:*:*
- < 6.13
A privilege escalation vulnerability has been identified in SALTO ProAccess Space software versions prior to 6.13, when the tenancy feature is enabled. This vulnerability allows an authenticated attacker to access spaces outside their assigned partition within the same ProAccess Space installation. Exploitation requires valid operator credentials.
Exploitation of this vulnerability could allow an authenticated attacker to escalate privileges and access unauthorized spaces within the same ProAccess Space installation.
Users of SALTO ProAccess Space should upgrade to version 6.13. After applying the update, it is recommended to operate ProAccess Space on a protected internal network, restrict operator-level accounts to the minimum required, and consider running separate Space instances if strong tenant separation is needed.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.