vendor:
Electrolink FM/DAB/TV Transmitter
by:
Anonymous
6.1
CVSS
HIGH
Authentication Bypass
287
CWE
Product Name: Electrolink FM/DAB/TV Transmitter
Affected Version From: 01.03
Affected Version To: 2.1
Patch Exists: NO
Related CWE: TBD
CPE: o:electrolink:fm_transmitter
Platforms Tested:
2021
Electrolink FM/DAB/TV Transmitter (Login Cookie) Authentication Bypass
The Electrolink FM/DAB/TV Transmitter devices are vulnerable to an authentication bypass issue. Attackers can exploit this vulnerability to bypass authentication mechanisms and gain unauthorized access to the affected devices. This could lead to potential unauthorized configuration changes or disruptions in broadcasting services. This vulnerability has been identified in various versions of the Electrolink transmitters, including Compact DAB Transmitters, Medium DAB Transmitters, High Power DAB Transmitters, Compact FM Transmitters, Modular FM Transmitters, Digital FM Transmitters, VHF TV Transmitters, and UHF TV Transmitters.
Mitigation:
To mitigate this vulnerability, it is recommended to apply the latest firmware updates provided by Electrolink. Additionally, users should ensure that the devices are not directly exposed to the internet and implement strong network segmentation to limit unauthorized access.