Privilege Escalation Vulnerability in AVTECH Room Alert 3E Devices
CVE-2019-13379
8.8HIGH
What is CVE-2019-13379?
AVTECH Room Alert 3E devices prior to version 2.2.5 are susceptible to a vulnerability that allows an unauthenticated user to escalate their privileges to that of an administrator. This can be accomplished by accessing the device's web interface and executing a reset command using the default credentials, thus gaining unauthorized access to sensitive administrative functionalities. It is crucial for users to update their devices to mitigate this security risk.
