Vulnerabilities > CVE-2021-30126 - Unspecified vulnerability in Lightmeter Controlcenter
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
LOW Integrity impact
LOW Availability impact
NONE Summary
Lightmeter ControlCenter 1.1.0 through 1.5.x before 1.5.1 allows anyone who knows the URL of a publicly available Lightmeter instance to access application settings, possibly including an SMTP password and a Slack access token, via a settings HTTP query.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 13 |