CVE-2014-8384 - CERT CVE
ID CVE-2014-8384
Sažetak The InFocus IN3128HD projector with firmware 0.26 does not restrict access to cgi-bin/webctrl.cgi.elf, which allows remote attackers to modify the DHCP server and device IP configuration, reboot the device, change the device name, and have other unspecified impact via a crafted request.
Reference
CVSS
Base: 9.4
Impact: 9.2
Exploitability:10.0
Pristup
VektorSloženostAutentikacija
NETWORK LOW NONE
Impact
PovjerljivostCjelovitostDostupnost
NONE COMPLETE COMPLETE
CVSS vektor AV:N/AC:L/Au:N/C:N/I:C/A:C
Zadnje važnije ažuriranje 19-05-2015 - 16:31
Objavljeno 18-05-2015 - 15:59