A vulnerability classified as problematic was found in ZLMediaKit up to 8.0. Affected by this vulnerability is an unknown functionality of the component HTTP API Interface. The manipulation of the argument secret leads to use of hard-coded password.

This vulnerability is known as CVE-2024-27488. The attack can be launched remotely. There is no exploit available.