Описание
The bootloader of the homee Brain Cube V2 through 2.23.0 allows attackers with physical access to gain root access by manipulating the U-Boot environment via the CLI after connecting to the internal UART interface.
Ссылки
- ProductVendor Advisory
- Third Party Advisory
- ProductVendor Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия от 2.0.0 (включая) до 2.23.0 (включая)
Одновременно
cpe:2.3:o:hom.ee:brain_cube_core:*:*:*:*:*:*:*:*
cpe:2.3:h:hom.ee:brain_cube:*:*:*:*:*:*:*:*
EPSS
Процентиль: 32%
0.00119
Низкий
6.8 Medium
CVSS3
7.2 High
CVSS2
Дефекты
CWE-306
Связанные уязвимости
github
около 3 лет назад
The bootloader of the homee Brain Cube V2 through 2.23.0 allows attackers with physical access to gain root access by manipulating the U-Boot environment via the CLI after connecting to the internal UART interface.
EPSS
Процентиль: 32%
0.00119
Низкий
6.8 Medium
CVSS3
7.2 High
CVSS2
Дефекты
CWE-306