Description
webctrl.cgi.elf on Christie Digital DWU850-GS V06.46 devices allows attackers to perform any desired action via a crafted query containing an unspecified Cookie header. Authentication bypass can be achieved by including an administrative cookie that the device does not validate.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-27528 | webctrl.cgi.elf on Christie Digital DWU850-GS V06.46 devices allows attackers to perform any desired action via a crafted query containing an unspecified Cookie header. Authentication bypass can be achieved by including an administrative cookie that the device does not validate. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T02:44:09.494Z
Reserved: 2021-08-31T00:00:00.000Z
Link: CVE-2021-40350
No data.
Status : Modified
Published: 2021-09-01T15:15:12.887
Modified: 2024-11-21T06:23:55.700
Link: CVE-2021-40350
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD