CVE-2020-11542
04.04.2020, 22:15
3xLOGIC Infinias eIDC32 2.213 devices with Web 1.107 allow Authentication Bypass via CMD.HTM?CMD= because authentication depends on the client side's interpretation of the <KEY>MYKEY</KEY> substring.Enginsight
Vendor | Product | Version |
---|---|---|
3xlogic | infinias_eidc32_firmware | 2.213 |
3xlogic | infinias_eidc32_web | 1.107 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration