CyberRota Analysis
AI-GeneratedWellav Technologies' WES Emergency Broadcast Terminals (models WES100, WES270, WES280, and WES290) prior to August 8, 2023, are vulnerable to a remote information disclosure flaw due to inadequate protections in the global API request wrapper function. This vulnerability could allow attackers to access sensitive information, posing significant risks to the confidentiality of emergency communications. Organizations utilizing these terminals should prioritize patching to mitigate potential exploitation.
Original NVD Description
An issue in Wellav Technologies Co., Ltd Wellav WES Emergency Broadcast Terminal WES100, WES270, WES280, and WES290 before 08-08-2023 allows a remote attacker to obtain sensitive information via the global API request wrapper function