The Glen Dimplex Deutschland GmbH implementation of the Carel pCOWeb configuration tool allows remote malicious users to obtain access via an HTTP session on port 10000, as demonstrated by reading the modem password (which is 1234), or reconfiguring "party mode" or "vacation mode."
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
carel pcoweb_card_firmware - |