← volver
CVE-2016-6544

iTrack Easy's getgps data can be modified without authentication

EPSS 3.4%CWE-306
getgps data in iTrack Easy can be modified without authentication by setting the data using the parametercmd:setothergps. This vulnerability can be exploited to alter the GPS data of a lost device.
Productos afectados
iTrack · Easy

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →