mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-10 15:59:29 +02:00
18 lines
788 B
Markdown
18 lines
788 B
Markdown
### [CVE-2021-28372](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-28372)
|
|

|
|

|
|

|
|
|
|
### Description
|
|
|
|
ThroughTek's Kalay Platform 2.0 network allows an attacker to impersonate an arbitrary ThroughTek (TUTK) device given a valid 20-byte uniquely assigned identifier (UID). This could result in an attacker hijacking a victim's connection and forcing them into supplying credentials needed to access the victim TUTK device.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
No PoCs from references.
|
|
|
|
#### Github
|
|
- https://github.com/castroaj/throughtek-kalay-mock-attack
|
|
|