Elber signum dvbs/s2 ird for radio networks 1.999 authentication bypass Vulnerability / Exploit
/
/
/
Exploits / Vulnerability Discovered : 2024-05-04 |
Type : webapps |
Platform : hardware
This exploit / vulnerability Elber signum dvbs/s2 ird for radio networks 1.999 authentication bypass is for educational purposes only and if it is used you will do on your own risk!
[+] Code ...
Elber Signum DVB-S/S2 IRD For Radio Networks 1.999 Authentication Bypass
Summary: The SIGNUM controller from Elber satellite equipment demodulates
one or two DVB-S/ S2 signals up to 32APSK (single/multi-stream), achieving
256 KS/s as minimum symbol rate. The TS demodulated signals can be aligned
and configured in 1+1 seamless switching for redundancy. Redundancy can also
be achieved with external ASI and TSoIP inputs. Signum supports MPEG-1 LI/II
audio codec, providing analog and digital outputs; moreover, it’s possible
to set a data PID to be decoded and passed to the internal RDS encoder,
generating the dual MPX FM output.
Desc: The device suffers from an authentication bypass vulnerability through
a direct and unauthorized access to the password management functionality. The
issue allows attackers to bypass authentication by manipulating the set_pwd
endpoint that enables them to overwrite the password of any user within the
system. This grants unauthorized and administrative access to protected areas
of the application compromising the device's system security.