Improper access control vulnerability exists in Energy Management Controller with Cloud Services JH-RVB1 /JH-RV11 Ver.B0.1.9.1 and earlier, which may allow a network-adjacent unauthenticated attacker to obtain a username and its hashed password displayed on the management page of the affected product.
2024-02-14T10:15:08.610
2025-03-25T17:15:50.533
Modified
CVSSv3.1: 6.5 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | sharp | jh-rvb1_firmware | ≤ b0.1.9.1 | Yes |
Hardware | sharp | jh-rvb1 | * | No |
Operating System | sharp | jh-rv11_firmware | ≤ b0.1.9.1 | Yes |
Hardware | sharp | jh-rv11 | * | No |