Digi Passport Firmware up to and including 1.5.1,1 is affected by a buffer overflow. An attacker can supply a string in the page parameter for reboot.asp endpoint, allowing him to force an overflow when the string is concatenated to the HTML body.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
digi passport_firmware |