Download of code without integrity check in Zingbox Inspector - CVE-2019-15019
Published: October 3, 2019
Zingbox Inspector
Detailed vulnerability description
The vulnerability allows a remote attacker to compromise the affected system
The vulnerability exists due to software does not perform software integrity check when downloading firmware updates. A remote attacker with ability to perform man-in-the-middle (MitM) attack can supply a malicious firmware image and gain full control over the affected system after a successful software update.