The AirVantage platform is vulnerable to an unauthorized...
High severity
Unreviewed
Published
Dec 21, 2024
to the GitHub Advisory Database
•
Updated Dec 21, 2024
Description
Published by the National Vulnerability Database
Dec 21, 2024
Published to the GitHub Advisory Database
Dec 21, 2024
Last updated
Dec 21, 2024
The AirVantage platform is vulnerable to an unauthorized attacker registering previously unregistered
devices on the AirVantage platform when the owner has not disabled the AirVantage Management
Service on the devices or registered the device. This could enable an attacker to configure, manage,
and execute AT commands on an unsuspecting user’s devices.
References