ZeroHour

CVE-2017-16348

PoC
CVSS 3.1
7.5 high
EPSS
2%p76
Published
()
Modified
Description

An exploitable denial of service vulnerability exists in Insteon Hub running firmware version 1012. Leftover demo functionality allows for arbitrarily rebooting the device without authentication. An attacker can send a UDP packet to trigger this vulnerability.

Vendors
insteon
Products
insteon hub firmware
Weakness
CWE-287
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news