Radio Thermostat CT80 And CT50 CVE-2013-4860 Remote Security Bypass Vulnerability
BID:61581
Info
Radio Thermostat CT80 And CT50 CVE-2013-4860 Remote Security Bypass Vulnerability
| Bugtraq ID: | 61581 |
| Class: | Access Validation Error |
| CVE: |
CVE-2013-4860 |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 01 2013 12:00AM |
| Updated: | Mar 19 2015 08:45AM |
| Credit: | Daniel Crowley of Trustwave SpiderLabs |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
Radio Thermostat CT80 And CT50 CVE-2013-4860 Remote Security Bypass Vulnerability
Radio Thermostat CT80 and CT50 are prone to a security-bypass vulnerability.
An attacker may leverage this issue to bypass certain security restrictions and perform unauthorized actions.
Radio Thermostat CT80 and CT50 running versions 1.4.64 and prior are vulnerable.
Radio Thermostat CT80 and CT50 are prone to a security-bypass vulnerability.
An attacker may leverage this issue to bypass certain security restrictions and perform unauthorized actions.
Radio Thermostat CT80 and CT50 running versions 1.4.64 and prior are vulnerable.
References
Radio Thermostat CT80 And CT50 CVE-2013-4860 Remote Security Bypass Vulnerability
References:
References:
- TWSL2013-022: No Authentication Vulnerability in Radio Thermostat of America, In (Daniel Crowley of Trustwave SpiderLabs)
- Vendor Homepage (Radio Thermostat Company of America)