Micodus · Micodus Mv720 Gps Tracker · CVE-2022-33944
**Name of the Vulnerable Software and Affected Versions**
MiCODUS MV720 GPS tracker (affected versions not specified)
**Description**
The main web server of the MiCODUS MV720 GPS tracker has an authenticated insecure direct object references issue. This issue is related to an endpoint and the POST parameter `Device ID`, which accepts arbitrary device IDs.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.