CVE-2017-11349
dataTaker DT8x dEX 1.72.007 allows remote attackers to compose programs or schedules, for purposes such as sending e-mail messages or making outbound connections to FTP servers for uploading data.
Date published : 2017-07-16
https://nullku7.github.io/stuff/exposure/industrial/2017/05/02/Thermofisher-dataTaker.html
No Encryption: True
No Authentication: True
Remotely Programmable: True
Thermofisher's datataker, IoT at its best!https://t.co/68nSsAqgwn— null ku7 : @ku7@infosec.exchange (@nullku7) May 2, 2017