Medium severity6.5NVD Advisory· Published Sep 26, 2018· Updated Jun 17, 2026
CVE-2018-16672
CVE-2018-16672
Description
An issue was discovered in CIRCONTROL CirCarLife before 4.3. Due to the storage of multiple sensitive information elements in a JSON format at /services/system/setup.json, an authenticated but unprivileged user can exfiltrate critical setup information.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: <4.3
Patches
Vulnerability mechanics
References
2- github.com/SadFud/Exploits/tree/master/Real%20World/Suites/cir-pwn-lifenvdExploitThird Party Advisory
- www.exploit-db.com/exploits/45384/nvdExploitThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.