UGREEN CM933 Missing Authentication Vulnerability in Administrative Interface
Vulnerability
A vulnerability allowing for missing authentication has been identified in the UGREEN CM933 model, specifically in version 1.1.59.4319. The issue arises from an unknown function within the Administrative Interface component, potentially allowing unauthorized access or actions. This vulnerability can only be exploited by someone on the local network.
Impact
Exploitation of this vulnerability could lead to unauthorized access or actions within the Administrative Interface, due to the missing authentication.
Remediation
Users are advised to upgrade to the version scheduled for release in late April, which will address this vulnerability.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
