CVE-2019-3950
09.07.2019, 18:15
Arlo Basestation firmware 1.12.0.1_27940 and prior contain a hardcoded username and password combination that allows root access to the device when an onboard serial interface is connected to.Enginsight
Vendor | Product | Version |
---|---|---|
arlo | vmb3010_firmware | 𝑥 < 1.12.2.3_2762 |
arlo | vmb4000_firmware | 𝑥 < 1.12.2.3_2762 |
arlo | vmb3500_firmware | 𝑥 < 1.12.2.4_2773 |
arlo | vmb4500_firmware | 𝑥 < 1.12.2.4_2773 |
arlo | vmb5000_firmware | 𝑥 < 1.12.2.2_2824 |
𝑥
= Vulnerable software versions