Posted by Georg Lukas on Aug 18
<PDF advisory:
https://rt-solutions.de/piciorgros/Piciorgros_TMO-100_TFTP_en.pdf >
Classification
————–
– CWE-306: Missing Authentication for Critical Function
– CWE-940: Improper Verification of Source of a Communication Channel
– CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
– CVSS 4.0 Score: 8.4 / High
CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:L/VI:H/VA:H/SC:L/SI:N/SA:H
– CVSS 3.1 Score: 8.3…
– Read More – Full Disclosure



