Beveiligingsadvies

CVE-2021-20992

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2021-04-19 14:05:02
Laatst bijgewerkt 2024-09-17 02:36:30
Toegewezen door CERTVDE
CVSS-score 8.1
Status PUBLISHED

Beschrijving

In Fibaro Home Center 2 and Lite devices in all versions provide a web based management interface over unencrypted HTTP protocol. Communication between the user and the device can be eavesdropped to hijack sessions, tokens and passwords.