CVE-2022-34150
20.07.2022, 16:15
The main MiCODUS MV720 GPS tracker web server has an authenticated insecure direct object reference vulnerability on endpoint and parameter device IDs, which accept arbitrary device IDs without further verification.Enginsight
| Vendor | Product | Version |
|---|---|---|
| micodus | mv720_firmware | - |
𝑥
= Vulnerable software versions
Common Weakness Enumeration