CVE-2014-8329: Schrack Technik Microcontrol

High severity, CVSS 10.0. EPSS: 2.1% chance of exploitation in the next 30 days.

Schrack Technik microControl with firmware before 1.7.0 (937) stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain access data for the ftp and telnet services via a direct request for ZTPUsrDtls.txt.

Affected products

  • Schrack Technik Microcontrol
  • Schrack Technik Microcontrol Firmware: up to and including 1.7.0

Published 2014-10-20. Last modified 2026-06-17.