Blog | G5 Cyber Security

Miele Professional PG 8528 washer-disinfector affected by a Web Server Directory Traversal

An Internet-Connected Medical Washer-Disinfector, the Mieles model Professional PG 8528, is affected by a Web Server Directory Traversal vulnerability tracked as CVE-2017-7240. The flaw could allow attackers to access sensitive data on the server, to drop and execute malicious code on the web server. Expert Jens Regel at the German consultancy Schneider & Wulf who reported the issue to Mele in December 2016, decided to publicly disclose it.”]

Source: https://securityaffairs.co/wordpress/57457/iot/mele-washer-disinfector-flaw.html

Exit mobile version