An issue in Turing Video Turing Edge+ EVC5FD v.1.38.6 allows remote attacker to execute arbitrary code and obtain sensitive information via the cloud connection components.
The product does not validate, or incorrectly validates, a certificate.
Link | Tags |
---|---|
http://turing.com | product |
https://gist.github.com/stevenliuturing/306bb689737cec5d3a5760c34d65932c | third party advisory |