ZIV IDF and ZLF Products Cross-Origin Resource Sharing Configuration Error Vulnerability
Vulnerability
A vulnerability has been identified in ZIV's IDF and ZLF products, specifically in versions through 0.10.0-0C03-04. The issue arises from a configuration error in cross-origin resource sharing (CORS), which could potentially be exploited by authenticated users with view permissions. This vulnerability requires executing certain commands on the device.
Impact
Exploitation of this vulnerability could lead to improper handling of cross-origin requests, potentially allowing for unauthorized access or manipulation of resources.
Remediation
Users can upgrade to ZIV's firmware version 1.1.0 to address this vulnerability.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
