CVE-2019-15067
An authentication bypass vulnerability discovered in Smart Battery A2-25DE
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 1.9%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
25 Sep 2019Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
An authentication bypass vulnerability discovered in Smart Battery A2-25DE, a multifunctional portable charger, firmware version ?<= SECFS-2013-10-16-13:42:58-629c30ee-60c68be6. An attacker can bypass authentication and gain privilege by modifying the login page.
Affected products
Gigastone · Smart Battery A2-25DEWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →