Draeger X-Dock Firmware before 03.00.13 has Hard-Coded Credentials, leading to remote code execution by an authenticated attacker.
The product contains hard-coded credentials, such as a password or cryptographic key.
Link | Tags |
---|---|
https://static.draeger.com/security | vendor advisory |
https://static.draeger.com/security/download/PSA-21-120-1-X-Dock-Product-Security-Advisory.pdf | vendor advisory |
https://www.zerodayinitiative.com/advisories/ZDI-21-604/ | third party advisory vdb entry |