Multiple Pimax products accept WebSocket connections from unintended endpoints. If this vulnerability is exploited, arbitrary code may be executed by a remote unauthenticated attacker.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Pitool | Pimax | - (including) | - (including) |
Play | Pimax | * | 1.21.01 (excluding) |