VibroLine Devices No Password By Default Vulnerability
Vulnerability
A vulnerability exists in VibroLine devices running version 5.0 Firmware 2.1.1340 - 2.1.1387, as well as in certain 4.0 versions, where devices are shipped without a default password. The lack of a password is not addressed by enforcement to set one, allowing unauthorized access to the devices.
Impact
Exploitation of this vulnerability allows for unauthorized access to the affected devices.
Remediation
Users are advised to assign a password to the device upon first use. For devices running VibroLine 5.0 Firmware 2.1.1340 - 2.1.1387, an update to version 2.1.1866 is recommended, as this version includes a fix for the vulnerability. Instructions for downloading the update are available on the Innomic website.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
