Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Axel Technology StreamerMAX MK II devices (firmware versions 0.8.5 to 1.0.3) are vulnerable to Broken Access Control due to missing authentication on the /cgi-bin/gstFcgi.fcgi endpoint. Unauthenticated remote attackers can list user accounts, create new administrative users, delete users, and modify system settings, leading to full compromise of the device.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Axel StreamerMAX MK II 安全漏洞
Vulnerability Description
Axel StreamerMAX MK II是意大利Axel公司的一款音频编解码设备。 Axel StreamerMAX MK II 0.8.5版本至1.0.3版本存在安全漏洞,该漏洞源于/cgi-bin/gstFcgi.fcgi端点缺少身份验证,可能导致设备完全破解。
CVSS Information
N/A
Vulnerability Type
N/A