9.1
CVE-2026-24346
- EPSS 0.04%
- Veröffentlicht 27.01.2026 09:18:57
- Zuletzt bearbeitet 05.02.2026 17:32:26
- Quelle vulnerability@ncsc.ch
- CVE-Watchlists
- Unerledigt
Use of well-known default credentials in Admin UI of EZCast Pro II version 1.17478.146 allows attackers to access protected areas in the web application
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Nimbletech ≫ Ezcast Pro Dongle Ii Firmware Version1.17478.146
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.04% | 0.122 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 9.1 | 3.9 | 5.2 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
|
| vulnerability@ncsc.ch | 7.6 | 0 | 0 |
CVSS:4.0/AV:A/AC:H/AT:N/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:N/R:U/V:X/RE:X/U:X
|
CWE-798 Use of Hard-coded Credentials
The product contains hard-coded credentials, such as a password or cryptographic key.