LAVA Ether-Serial Link (ESL) Firmware Authentication Bypass Vulnerability

LAVA Ether-Serial Link (ESL) Firmware Authentication Bypass Vulnerability

CVE-2017-14003 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

An Authentication Bypass by Spoofing issue was discovered in LAVA Ether-Serial Link (ESL) running firmware versions 6.01.00/29.03.2007 and prior versions. An improper authentication vulnerability has been identified, which, if exploited, would allow an attacker with the same IP address to bypass authentication by accessing a specific uniform resource locator.

Learn more about our Web Application Penetration Testing UK.