Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6pqj-xx9q-7p34

Опубликовано: 27 июн. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 5.2
CVSS3: 5.4

Описание

Unauthenticated users on an adjacent network with the Sight Bulb Pro can run shell commands as root through a vulnerable proprietary TCP protocol available on Port 16668. This vulnerability allows an attacker to run arbitrary commands on the Sight Bulb Pro by passing a well formed JSON string.

Unauthenticated users on an adjacent network with the Sight Bulb Pro can run shell commands as root through a vulnerable proprietary TCP protocol available on Port 16668. This vulnerability allows an attacker to run arbitrary commands on the Sight Bulb Pro by passing a well formed JSON string.

EPSS

Процентиль: 10%
0.00037
Низкий

5.2 Medium

CVSS4

5.4 Medium

CVSS3

Дефекты

CWE-77

Связанные уязвимости

CVSS3: 5.4
nvd
23 дня назад

Unauthenticated users on an adjacent network with the Sight Bulb Pro can run shell commands as root through a vulnerable proprietary TCP protocol available on Port 16668. This vulnerability allows an attacker to run arbitrary commands on the Sight Bulb Pro by passing a well formed JSON string.

EPSS

Процентиль: 10%
0.00037
Низкий

5.2 Medium

CVSS4

5.4 Medium

CVSS3

Дефекты

CWE-77