Description
All versions of Dingtian DT-R002 are vulnerable to an Insufficiently Protected Credentials vulnerability that could allow an attacker to retrieve the current user's username without authentication.
Problem types
CWE-522 Insufficiently Protected Credentials
Product status
All versions
Credits
Nicolas Cano and Reid Wightman of Dragos
References
www.cisa.gov/news-events/ics-advisories/icsa-25-268-01