Exposure of Sensitive Information to an Unauthorized...
Moderate severity
Unreviewed
Published
May 6, 2025
to the GitHub Advisory Database
•
Updated May 6, 2025
Description
Published by the National Vulnerability Database
May 6, 2025
Published to the GitHub Advisory Database
May 6, 2025
Last updated
May 6, 2025
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Crestron Automate VX allows Functionality Misuse.
There is no visible indication when the system is recording and recording can be enabled remotely via a network API.
This issue affects Automate VX: from 5.6.8161.21536 through 6.4.0.49.
References