1 results (0.001 seconds)

CVSS: 10.0EPSS: 92%CPEs: 2EXPL: 3

12 Jan 2022 — An issue was discovered on Crestron HD-MD4X2-4K-E 1.0.0.2159 devices. When the administrative web interface of the HDMI switcher is accessed unauthenticated, user credentials are disclosed that are valid to authenticate to the web interface. Specifically, aj.html sends a JSON document with uname and upassword fields. Se ha detectado un problema en los dispositivos Crestron HD-MD4X2-4K-E versión 1.0.0.2159. Cuando es accedida la interfaz web administrativa del conmutador HDMI sin autenticación, se revelan cr... • https://packetstorm.news/files/id/165530 • CWE-287: Improper Authentication •