CVE-2024-28146

Publication date

2024-12-12 13:49:29

Family

SEC-VLab

State

PUBLISHED

Description

The application uses several hard-coded credentials to encrypt config files during backup, to decrypt the new firmware during an update and some passwords allow a direct connection to the database server of the affected device.