PT-2017-17661 · Humax · Humax Digital Hg100R

The Gambler

·

Published

2017-07-04

·

Updated

2017-07-07

·

CVE-2017-7317

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Humax Digital HG100 version 2.0.6
Description An issue was discovered where an attacker can obtain the root credentials from the backup file, specifically GatewaySettings.bin.
Recommendations For Humax Digital HG100 version 2.0.6, consider changing the root credentials and restricting access to the backup file to minimize the risk of exploitation.

Exploit

Fix

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2017-7317

Affected Products

Humax Digital Hg100R