An unauthenticated remote attacker who is aware of a MQTT...
Critical severity
Unreviewed
Published
Apr 9, 2024
to the GitHub Advisory Database
•
Updated Oct 2, 2024
Description
Published by the National Vulnerability Database
Apr 9, 2024
Published to the GitHub Advisory Database
Apr 9, 2024
Last updated
Oct 2, 2024
An unauthenticated remote attacker who is aware of a MQTT topic name can send and receive messages, including GET/SET configuration commands, reboot commands and firmware updates.
References