CyberRota Analysis
AI-GeneratedThe Comelit Multi-User Gateway for VIP System (model 1456B) firmware versions 2.9.1 and 2.10.0 contains a high-severity vulnerability that exposes an unauthenticated network-accessible management interface, allowing remote attackers to access sensitive configuration data, including the Remote Configuration Password, in cleartext. Organizations using this gateway should prioritize patching or securing their devices to mitigate the risk of unauthorized access and potential exploitation.
Original NVD Description
Comelit Multi-User Gateway for VIP System (model 1456B) firmware versions 2.9.1 and 2.10.0 expose a network-accessible management interface that does not require authentication. Through this interface, sensitive device configuration data - including the Remote Configuration Password - can be read in cleartext by a remote, unauthenticated attacker.