Full title: InFocus IN3128HD Projector Missing Authentication Vulnerability Category: web applications Platform: hardware The InFocus IN3128HD Projector is vulnerable to an authentication bypass in its web interface login page, and is missing authentication for the "webctrl.cgi.elf" CGI file, which allows several actions to be performed or configured inside the device. Firmware 0.26 is verified vulnerable. # 0day.today @ http://0day.today/