Описание
The InFocus IN3128HD projector with firmware 0.26 does not restrict access to cgi-bin/webctrl.cgi.elf, which allows remote attackers to modify the DHCP server and device IP configuration, reboot the device, change the device name, and have other unspecified impact via a crafted request.
Комментарий
Ссылки
- Exploit
- Exploit
- ExploitVendor Advisory
- Exploit
- Exploit
- ExploitVendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одновременно
cpe:2.3:o:infocus:in3128hd_firmware:0.26:*:*:*:*:*:*:*
cpe:2.3:h:infocus:in3128hd:-:*:*:*:*:*:*:*
EPSS
Процентиль: 77%
0.01059
Низкий
9.4 Critical
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
больше 3 лет назад
The InFocus IN3128HD projector with firmware 0.26 does not restrict access to cgi-bin/webctrl.cgi.elf, which allows remote attackers to modify the DHCP server and device IP configuration, reboot the device, change the device name, and have other unspecified impact via a crafted request.
EPSS
Процентиль: 77%
0.01059
Низкий
9.4 Critical
CVSS2
Дефекты
NVD-CWE-Other