The vendor explicitly identifies these products as affected by this CVE.
- RMC-100 Version (>=2105457-043|<=2105457-045)
- RMC-100 LITE Version (>=2106229-015|<=2106229-016)
- Summary
- When the REST interface is enabled by the user, and an attacker gains access to source code and control network, the attacker can bypass the REST interface authentication and gain access to MQTT configuration data.
- Remediation
- The problem is corrected in RMC-100 version (2105457-046) and RMC-100 LITE version (2106229-018)
