A vulnerability exists in Snap One OVRC cloud where an...
High severity
Unreviewed
Published
Dec 2, 2024
to the GitHub Advisory Database
•
Updated Dec 2, 2024
Description
Published by the National Vulnerability Database
Dec 2, 2024
Published to the GitHub Advisory Database
Dec 2, 2024
Last updated
Dec 2, 2024
A vulnerability exists in Snap One OVRC cloud where an attacker can impersonate a Hub device and send requests to claim and unclaim devices. The attacker only needs to provide the MAC address of the targeted device and can make a request to unclaim it from its original connection and make a request to claim it.
References