Kerlink KerOS
- <= 4.3.3
A vulnerability in Kerlink Wirnet iStation devices running KerOS versions through 4.3.3 has been identified, allowing remote attackers to access sensitive information. This issue arises from the exposure of device-specific details via mDNS, which could enable an unauthenticated attacker on the local network to gain unauthorized access to management services such as SNMP.
Exploitation of this vulnerability could lead to unauthorized access to sensitive device information and management services, potentially allowing for further exploitation of the device or network.
Users are advised to upgrade to the latest version of KerOS 6, as KerOS 4 and 5 are no longer supported.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.