The Dataprobe iBoot PDU running firmware version 1.43.03312023 or earlier uses hard-coded credentials for all interactions with the internal Postgres database.A malicious agent with the ability to exe ...
Continue ReadingAugust 14, 2023
Harman Infotainment 20190525031613 and later discloses the IP address via CarPlay CTRL packets.Read More ...
Continue ReadingAugust 14, 2023
The Dataprobe iBoot PDU running firmware version 1.43.03312023 or earlier is vulnerable to authentication bypass. By manipulating the IP address field in the "iBootPduSiteAuth" cookie, a malicious age ...
Continue ReadingAugust 14, 2023
The Dataprobe iBoot PDU running firmware version 1.43.03312023 or earlier is vulnerable to command injection via the `user-name` URL parameter.An authenticated malicious agent can exploit this vulnera ...
Continue ReadingAugust 14, 2023
Genesys Administrator Extension (GAX) before 9.0.105.15 is vulnerable to Cross Site Scripting (XSS) via the Business Structure page of the iWD plugin, aka GAX-11261.Read More ...
Continue ReadingAugust 13, 2023
This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will b ...
Continue ReadingAugust 13, 2023
Input verification vulnerability in the storage module. Successful exploitation of this vulnerability may cause the device to restart.Read More ...
Continue ReadingAugust 13, 2023
Vulnerability of input parameters being not strictly verified in the PMS module. Successful exploitation of this vulnerability may cause home screen unavailability.Read More ...
Continue ReadingAugust 13, 2023
Back to Main