Impact
A flaw in the AMTT Hotel Broadband Operation System allows an attacker to manipulate the ID parameter in switch_status.php, resulting in a SQL injection vulnerability. An attacker can execute arbitrary SQL statements against the underlying database, which could lead to data disclosure, tampering, or unauthorized changes to configuration and network state. The vulnerability is not limited to local users; it can be triggered remotely by sending a crafted request to the affected endpoint.
Affected Systems
The vulnerability affects AMTT Hotel Broadband Operation System version 1.0. No other versions or products are documented as susceptible.
Risk and Exploitability
The CVSS score of 5.1 indicates a medium severity risk. EPSS score is < 1%, indicating a very low probability of exploitation. The vulnerability is not listed in the CISA KEV catalog, but known exploits have been published and may be used. The attack vector is remote, requiring only access to the web interface to supply a crafted ID value. Given the lack of an official vendor patch, the risk remains significant until mitigated through defensive controls.
OpenCVE Enrichment