AVE DOMINAplus <=1.10.x suffers from an unauthenticated reboot command execution. Attackers can exploit this issue to cause a denial of service scenario.
The product does not perform any authentication for functionality that requires a provable user identity or consumes a significant amount of resources.
Link | Tags |
---|---|
https://www.zeroscience.mk/en/vulnerabilities/ZSL-2019-5548.php | third party advisory exploit |
https://www.exploit-db.com/exploits/47820 | exploit vdb entry third party advisory |
https://cwe.mitre.org/data/definitions/306.html | technical description |