📦 Mv720 Firmware

by Micodus

🔍 What is Mv720 Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2022-2107

CRITICAL CVSS 9.8 Jul 20, 2022

The MiCODUS MV720 GPS tracker API server uses a hard-coded master password in its authentication mechanism, allowing attackers to send SMS commands to GPS trackers as if they were the legitimate owner...

CVE-2022-2199

HIGH CVSS 7.5 Jul 20, 2022

This vulnerability is a reflected cross-site scripting (XSS) flaw in the MiCODUS MV720 GPS tracker web server, allowing an attacker to inject malicious scripts via crafted requests. If exploited, it c...

CVE-2022-34150

HIGH CVSS 7.1 Jul 20, 2022

The MiCODUS MV720 GPS tracker web server has an authenticated insecure direct object reference vulnerability that allows authenticated users to access or manipulate data from arbitrary device IDs with...