The vendor explicitly identifies these products as affected by this CVE.
- blueplanet 100 NX3 M8
- blueplanet 100 TL3 GEN2
- blueplanet 105 TL3
- blueplanet 105 TL3 GEN2
- blueplanet 110 TL3
- blueplanet 125 NX3 M10
- blueplanet 125 TL3
- blueplanet 125 TL3 GEN2
- blueplanet 137 TL3
- blueplanet 150 TL3
- blueplanet 150 TL3 GEN2
- blueplanet 155 TL3
- Summary
- Improper neutralization of special elements used in an sql command ('sql injection') in KACO Meteor server allows an authorized attacker to elevate privileges over a local network.
- Remediation
- Currently no fix is available
