CVE-2019-17217: Vzug Combi-Stream Mslq Firmware

High severity, CVSS 8.8. EPSS: 0.5% chance of exploitation in the next 30 days.

An issue was discovered on V-Zug Combi-Steam MSLQ devices before Ethernet R07 and before WLAN R05. There is no CSRF protection established on the web service.

Affected products

  • Vzug Combi-Stream Mslq Firmware: before ethernet_r07 (fixed in ethernet_r07); before wlan_r05 (fixed in wlan_r05)

Published 2019-10-06. Last modified 2026-06-17.