ZeroHour

CVE-2019-15068

CVSS 3.1
9.8 critical
EPSS
2%p78
Published
()
Modified
Description

A broken access control vulnerability in Smart Battery A4, a multifunctional portable charger, firmware version ?<= r1.7.9 allows an attacker to get/reset administrator’s password without any authentication.

Vendors
gigastone
Products
smart battery a4 firmware
Weakness
CWE-284, CWE-306
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.