Multiple versions of GARO Wallbox GLB/GTB/GTC are affected by hard coded credentials. A hardcoded credential exist in /etc/tomcat8/tomcat-user.xml, which allows malicious users to gain authorized access and control the tomcat completely on port 8000 in the tomcat manger page.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
garo wallbox_gtb_firmware |
||
garo wallbox_gtc_firmware |
||
garo wallbox_glb_firmware |