CVE-2018-17922: Circontrol Circarlife Firmware
Critical severity, CVSS 9.8. EPSS: 3.2% chance of exploitation in the next 30 days.
Circontrol CirCarLife all versions prior to 4.3.1, the PAP credentials of the device are stored in clear text in a log file that is accessible without authentication.
Affected products
- Circontrol Circarlife Firmware: before 4.3.1 (fixed in 4.3.1)
Published 2018-11-02. Last modified 2026-06-17.