vendor:
ETL3100 Transmitter
by:
LiquidWorm
7.5
CVSS
HIGH
Unauthenticated Config/Log Download
287
CWE
Product Name: ETL3100 Transmitter
Affected Version From: v01c01
Affected Version To: v01x37
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: GNU/Linux Ubuntu 3.0.0+ (GCC 4.3.3), lighttpd/1.4.26, PHP/5.4.3, Xilinx Virtex Machine
2023
EuroTel ETL3100 – Transmitter Unauthenticated Config/Log Download
The TV and FM transmitter suffers from an unauthenticated configuration and log download vulnerability. This will enable the attacker to disclose sensitive information and help him in authentication bypass, privilege escalation and full system access.
Mitigation:
The vendor has not provided a patch or mitigation for this vulnerability.