Qolsys IQ Panel (aka QOL) before 1.5.1 has hardcoded cryptographic keys, which allows remote attackers to create digital signatures for code by leveraging knowledge of a key from a different installation.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Iq_panel |
Qolsys |
* |
1.5.0 |
References