Security Advisory

CVE-2019-11367

9.8
CRITICAL

Vulnerability Description

An issue was discovered in AUO Solar Data Recorder before 1.3.0. The web portal uses HTTP Basic Authentication and provides the account and password in the WWW-Authenticate attribute. By using this account and password, anyone can login successfully.
Published Date June 3, 2019
Official Source NIST NVD Advisory