CVE-2024-21872
Electrolink FM/DAB/TV Transmitter Reliance on Cookies without Validation and Integrity Checking
The device allows an unauthenticated attacker to bypass authentication
and modify the cookie to reveal hidden pages that allows more critical
operations to the transmitter.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N
Affected products
Electrolink · Compact DAB TransmitterElectrolink · Compact FM TransmitterElectrolink · Digital FM TransmitterElectrolink · High Power DAB TransmitterElectrolink · Medium DAB TransmitterElectrolink · Modular FM TransmitterElectrolink · UHF TV TransmitterElectrolink · VHF TV TransmitterWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →