Executive brief
Tiandy Easy7 Integrated Management Platform, a centralized system for managing security surveillance and video feeds, contains a vulnerability in its password reset functionality. An unauthorized remote attacker can exploit this flaw to manipulate the password recovery process, potentially allowing them to reset user passwords. This could lead to unauthorized access to the management platform and its connected security infrastructure.
Technical details
A vulnerability classified as CWE-640 (Weak Password Recovery Mechanism) exists in Tiandy Easy7 Integrated Management Platform version 7.17.0. The flaw is located within the API endpoint /rest/user/updateUserPassword. A remote, unauthenticated attacker can exploit this by sending crafted requests to the endpoint to manipulate the password recovery flow. Successful exploitation allows for unauthorized password resets or recovery, compromising user account integrity. An exploit for this vulnerability has been publicly disclosed, and as of the advisory date, the vendor has not provided a patch or response.
Affected products
- Tiandy Easy7 Integrated Management Platform 7.17.0
Timeline
- 2026-05-25: advisory: Vulnerability published by VulDB/NVD
- 2026-05-25: disclosed: Exploit publicly disclosed