Xiiaozet LK100W
Summary
Xiiaozet LK100W devices running firmware version below 2.1.240 are vulnerable to multiple security flaws, including OS command injection and authentication bypass. Successful exploitation could allow an attacker to gain control over the affected devices. The vulnerabilities have a CVSS v3.1 base score of 9.8.
IFF Assessment
FOE
The article details critical vulnerabilities in an industrial control system device that could lead to full device compromise, posing a significant threat to defenders.
Severity
9.8
Critical
Defender Context
Defenders should be aware of these vulnerabilities affecting Xiiaozet LK100W devices, particularly in critical infrastructure sectors. Immediate patching or mitigation is crucial to prevent potential device compromise and disruption.