Snap One OvrC Pro versions prior to 7.2 have their own locally running web server accessible both from the local network and remotely. OvrC cloud contains a hidden superuser account accessible through hard-coded credentials.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published: 2023-05-22T19:58:48.755Z

Updated: 2024-08-02T14:53:30.145Z

Reserved: 2023-04-26T19:18:23.304Z

Link: CVE-2023-31240

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2023-05-22T20:15:10.633

Modified: 2023-05-31T14:45:46.857

Link: CVE-2023-31240

cve-icon Redhat

No data.