An issue was discovered in AUO Solar Data Recorder before 1.3.0. The web portal uses HTTP Basic Authentication and provides the account and password in the WWW-Authenticate attribute. By using this account and password, anyone can login successfully.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T22:48:09.169Z

Reserved: 2019-04-20T00:00:00

Link: CVE-2019-11367

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-06-03T21:29:00.567

Modified: 2024-11-21T04:20:57.827

Link: CVE-2019-11367

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.