PT-2017-15245 · Home Spot · Home Spot Cube2
Published
2017-07-07
·
Updated
2017-07-14
·
CVE-2017-2186
CVSS v3.1
8.8
High
| Vector | AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
HOME SPOT CUBE2 firmware versions V101 and earlier
Description
The issue allows an attacker to bypass authentication and load malicious firmware via the WebUI.
Recommendations
For HOME SPOT CUBE2 firmware versions V101 and earlier, update to a version later than V101 to resolve the issue.
Fix
Improper Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Home Spot Cube2