In ZGR TPS200 NG 2.00 firmware version and 1.01 hardware version, the firmware upload process does not perform any type of restriction. This allows an attacker to modify it and re-upload it via web with malicious modifications, rendering the device unusable.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: INCIBE
Published: 2022-10-17T21:16:42.734877Z
Updated: 2024-09-16T19:31:50.185Z
Reserved: 2020-02-13T00:00:00
Link: CVE-2020-8974
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-10-17T22:15:10.110
Modified: 2024-11-21T05:39:45.977
Link: CVE-2020-8974
Redhat
No data.