CVE-2019-15068: Gigastone Smart Battery a4 Firmware

Critical severity, CVSS 9.8. EPSS: 1.9% chance of exploitation in the next 30 days.

A broken access control vulnerability in Smart Battery A4, a multifunctional portable charger, firmware version ?<= r1.7.9 allows an attacker to get/reset administrator’s password without any authentication.

Affected products

  • Gigastone Smart Battery a4 Firmware: up to and including r1.7.9

Published 2019-09-25. Last modified 2026-06-17.