CVE-2024-21872
Electrolink FM/DAB/TV Transmitter Reliance on Cookies without Validation and Integrity Checking
The device allows an unauthenticated attacker to bypass authentication
and modify the cookie to reveal hidden pages that allows more critical
operations to the transmitter.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N
Produtos afetados
Electrolink · Compact DAB TransmitterElectrolink · Compact FM TransmitterElectrolink · Digital FM TransmitterElectrolink · High Power DAB TransmitterElectrolink · Medium DAB TransmitterElectrolink · Modular FM TransmitterElectrolink · UHF TV TransmitterElectrolink · VHF TV TransmitterQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →