7.5
CVSSv2

CVE-2011-4835

Published: 15/12/2011 Updated: 15/12/2011
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Directory traversal vulnerability in the web interface in HomeSeer HS2 2.5.0.20 allows remote malicious users to access arbitrary files via unspecified vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

homeseer homeseer hs2 2.5.0.20

Exploits

# HomeSeer Home Automation Software Multiple Web Vulnerabilities (0day) # Date: 3/6/12 # Author: Silent_Dream # Software Link: wwwhomeseercom/pub/setuphs2_5_0_49exe # Version: 25049 # Tested on: Win XP # CERT VU#796883: wwwkbcertorg/vuls/id/796883 #Note: This affects both HomeSeer HS2 and HomeSeer PRO #Previously reported ...