ZeroHour

CVE-2017-17691

PoC
CVSS 3.0
8.1 high
EPSS
1%p62
Published
()
Modified
Description

Homeputer CL Studio fur HomeMatic 4.0 Rel 160808 and earlier uses cleartext to exchange the username and password between server and client instances, which allows remote attackers to obtain sensitive information via a man in the middle attack.

Vendors
contronics
Products
homeputer cl studio fur homematic
Weakness
CWE-522
Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.