DB Elettronica Screen SFT DAB Authentication Bypass Vulnerability Allowing Admin Password Change

Vulnerability

An authentication bypass vulnerability has been identified in the Screen SFT DAB digital audio broadcasting transmitter, specifically in version 1.9.3. This vulnerability allows attackers to change the admin password without needing the current password. Exploitation involves sending a crafted JSON request with a new password hashed using MD5 to the userManager.cgx endpoint, directly modifying the admin account.

Impact

Exploitation of this vulnerability allows for unauthorized password changes, potentially leading to unauthorized administrative access.

Reproduction

To reproduce this vulnerability, send a POST request to the userManager.cgx endpoint with a JSON payload that includes the 'username' set to 'admin' and the 'password' set to the desired new password, hashed with MD5. Include the appropriate headers to mimic a request from the transmitter's web interface.

Added: Dec 10, 2025, 9:59 PM
Updated: Dec 10, 2025, 9:59 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
5.0
exploitability
6.0
remediation
0.0
relevance
1.4
threat
6.4
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.