CVE-2023-45194
11.10.2023, 01:15
Use of default credentials vulnerability in MR-GM2 firmware Ver. 3.00.03 and earlier, and MR-GM3 (-D/-K/-S/-DK/-DKS/-M/-W) firmware Ver. 1.03.45 and earlier allows a network-adjacent unauthenticated attacker to intercept wireless LAN communication, when the affected product performs the communication without changing the pre-shared key from the factory-default configuration.Enginsight
Vendor | Product | Version |
---|---|---|
mrl | mr-gm3-d_firmware | 𝑥 < 1.04.00 |
mrl | mr-gm3-k_firmware | 𝑥 < 1.04.00 |
mrl | mr-gm3-s_firmware | 𝑥 < 1.04.00 |
mrl | mr-gm3-dks_firmware | 𝑥 < 1.04.00 |
mrl | mr-gm3-m_firmware | 𝑥 < 1.04.00 |
mrl | mr-gm2_firmware | 𝑥 < 3.01.00 |
mrl | mr-gm3-w_firmware | 𝑥 < 1.04.00 |
𝑥
= Vulnerable software versions