Qolsys IQ Panel (aka QOL) before 1.5.1 has hardcoded cryptographic keys, which allows remote attackers to create digital signatures for code by leveraging knowledge of a key from a different installation.
Weaknesses in this category are related to the management of credentials.
Link | Tags |
---|---|
http://www.kb.cert.org/vuls/id/573848 | third party advisory us government resource |