PT-2017-17661 · Humax · Humax Digital Hg100R
The Gambler
·
Published
2017-07-04
·
Updated
2017-07-07
·
CVE-2017-7317
CVSS v2.0
10
Critical
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Humax Digital HG100 version 2.0.6
Description
An issue was discovered where an attacker can obtain the root credentials from the backup file, specifically GatewaySettings.bin.
Recommendations
For Humax Digital HG100 version 2.0.6, consider changing the root credentials and restricting access to the backup file to minimize the risk of exploitation.
Exploit
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Humax Digital Hg100R