vendor:
Tinycontrol LAN Controller v3 (LK3)
by:
LiquidWorm
CVSS
Remote Denial Of Service
CWE
Product Name: Tinycontrol LAN Controller v3 (LK3)
Affected Version From: <=1.58a
Affected Version To:
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: lwIP
2023
Tinycontrol LAN Controller v3 (LK3) 1.58a – Remote Denial Of Service
The controller suffers from an unauthenticated remote denial of service vulnerability. An attacker can issue direct requests to the stm.cgi page to reboot and also reset factory settings on the device.