MileSight DeviceHub - CWE-305 Missing Authentication for Critical Function
An attacker can access critical functions of the Milesight DeviceHub platform without possessing any credentials. The lack of authentication mechanisms (CWE-305) and access controls (CWE-306) enables privileged operations to be invoked directly over the network without requiring user interaction. The attack vector is network-based, requires no complex conditions or any privileges.
An attacker can gain full control over the system, including access to sensitive data, ability to modify it, and disrupt service availability — which corresponds to maximum scores for confidentiality, integrity, and availability on the CVSS scale.
Apply patches available from the manufacturer according to the references. It is also recommended to restrict network access to DeviceHub administrative interfaces using a firewall and implement network segmentation until the patch is deployed.
Milesight DeviceHub and Canonical Ubuntu Linux — versions indicated in the manufacturer's references
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:HCanonical Ubuntu
OSCanonical20.04Milesight Devicehub
APPMilesight3.0.1-r1
Related vulnerabilities
Sudo: eskalacja uprawnień do root poprzez opcję --chroot (CVE-2025-32463)
Redis – ucieczka z Lua sandbox umożliwiająca zdalne wykonanie kodu (RCE)
SaltStack Salt: nieautoryzowany dostęp do metod salt-master umożliwiający RCE
RCE jako root w OpenSMTPD przez command injection w polu MAIL FROM
RCE w Exim — heap-based buffer overflow w obsłudze komendy EHLO