Suggested description
The Furuno Felcom250 and Felcom500 devices were found to perform authentication only on the client-side via the use of JavaScript.
Vulnerability Type
Incorrect Access Control
Vendor of Product
Furuno
Affected Product Code Base
Felcom500 - N/A
Felcom250 - N/A
Reference
https://gist.github.com/CyberSKR/34a8d6be7646a4bfd4df455f9f52500f
https://cyberskr.com/blog/furuno-felcom.html