Multiple Pimax products accept WebSocket connections from unintended endpoints. If this vulnerability is exploited, arbitrary code may be executed by a remote unauthenticated attacker.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Pitool | Pimax | - (including) | - (including) |
| Play | Pimax | * | 1.21.01 (excluding) |