The Dataprobe cloud usernames and passwords are stored in plain text in a specific file. Any user able to read this specific file from the device could compromise other devices connected to the user's ...
Continue ReadingMay 23, 2023
The affected products have a CSRF vulnerability that could allow an attacker to execute code and upload malicious files.Read More ...
Continue ReadingMay 23, 2023
Files present on firmware images could allow an attacker to gain unauthorized access as a root user using hard-coded credentials.Read More ...
Continue ReadingMay 23, 2023
A proprietary protocol for iBoot devices is used for control and keepalive commands. The function compares the username and password; it also contains the configuration data for the user specified. If ...
Continue ReadingMay 23, 2023
The iBoot deviceâs basic discovery protocol assists in initial device configuration. The discovery protocol shows basic information about devices on the network and allows users to perform config ...
Continue ReadingMay 23, 2023
Insecure Permission vulnerability found in Botkind/Siber Systems SyncApp v.19.0.3.0 allows a local attacker toe escalate privileges via the SyncService.exe file.Read More ...
Continue ReadingMay 22, 2023
Devices using Snap One OvrC cloud are sent to a web address when accessing a web management interface using a HTTP connection. Attackers could impersonate a device and supply malicious information abo ...
Continue ReadingMay 22, 2023
In Wcms 0.3.2, an attacker can send a crafted request from a vulnerable web application backend server /wcms/wex/html.php via the finish parameter and the textAreaCode parameter. It can write arbitrar ...
Continue ReadingMay 22, 2023
Back to Main