Xiiaozet LK100W

Summary

Xiiaozet LK100W devices running firmware version below 2.1.240 are vulnerable to multiple security flaws, including OS command injection and authentication bypass. Successful exploitation could allow an attacker to gain control over the affected devices. The vulnerabilities have a CVSS v3.1 base score of 9.8.

IFF Assessment

FOE

The article details critical vulnerabilities in an industrial control system device that could lead to full device compromise, posing a significant threat to defenders.

Severity

9.8 Critical

Defender Context

Defenders should be aware of these vulnerabilities affecting Xiiaozet LK100W devices, particularly in critical infrastructure sectors. Immediate patching or mitigation is crucial to prevent potential device compromise and disruption.

Read Full Story →