Auerswald COMpact 5500R devices before 8.2B allow Privilege Escalation via the passwd=1 substring.
The product transmits or stores authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval.
Link | Tags |
---|---|
https://www.redteam-pentesting.de/en/advisories/-advisories-publicised-vulnerability-analyses | third party advisory exploit |
http://packetstormsecurity.com/files/165163/Auerswald-COMpact-8.0B-Privilege-Escalation.html | exploit vdb entry third party advisory |
https://www.redteam-pentesting.de/advisories/rt-sa-2021-005 | third party advisory exploit |