Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
eq-3 vulnerabilities and exploits
(subscribe to this query)
8.1
CVSSv3
CVE-2018-7298
In /usr/local/etc/config/addons/mh/loopupd.sh on eQ-3 AG HomeMatic CCU2 2.29.22 devices, software update packages are downloaded via the HTTP protocol, which does not provide any cryptographic protection of the downloaded contents. An attacker with a privileged network position (...
Eq-3 Homematic Central Control Unit Ccu2 Firmware 2.29.22
8
CVSSv3
CVE-2018-7299
Remote Code Execution in the addon installation process in eQ-3 AG Homematic CCU2 2.29.2 and previous versions allows authenticated malicious users to create or overwrite arbitrary files or install malicious software on the device.
Eq-3 Homematic Central Control Unit Ccu2 Firmware
9.8
CVSSv3
CVE-2018-7301
eQ-3 AG HomeMatic CCU2 2.29.22 devices have an open XML-RPC port without authentication. This can be exploited by sending arbitrary XML-RPC requests to control the attached BidCos devices.
Eq-3 Homematic Central Control Unit Ccu2 Firmware 2.29.22
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
SSTI
CVE-2024-35863
CVE-2024-35910
man-in-the-middle
CVE-2024-35912
CVE-2024-25742
LFI
CVE-2024-32002
CVE-2024-22120
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4