Intelbras InControl Cleartext Transmission Vulnerability in Registered User Handler

Vulnerability

A vulnerability exists in Intelbras InControl versions through 2.21.58, specifically within the Registered User Handler component. The issue arises in an unknown part of the code related to the file '/v1/usuario/', where sensitive information is transmitted in cleartext. This vulnerability can be exploited remotely, although the complexity of the attack is considered high, making exploitation difficult.

Impact

Exploitation of this vulnerability leads to the cleartext transmission of sensitive information, such as passwords.

Remediation

Users are advised to upgrade to Intelbras InControl version 2.21.59 to address this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.3
impact
0.0
exploitability
8.4
remediation
7.7
relevance
0.0
threat
6.4
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.