Описание
An unauthorized user could gain account access to IQ Wifi 6 versions prior to 2.0.2 by conducting a brute force authentication attack.
Ссылки
- Third Party AdvisoryUS Government Resource
- Vendor Advisory
- Third Party AdvisoryUS Government Resource
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 2.0.2 (исключая)
Одновременно
cpe:2.3:o:johnsoncontrols:iq_wifi_6_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:johnsoncontrols:iq_wifi_6:-:*:*:*:*:*:*:*
EPSS
Процентиль: 34%
0.00134
Низкий
8.3 High
CVSS3
9.8 Critical
CVSS3
Дефекты
CWE-307
CWE-307
Связанные уязвимости
CVSS3: 8.3
github
больше 2 лет назад
An unauthorized user could gain account access to IQ Wifi 6 versions prior to 2.0.2 by conducting a brute force authentication attack.
EPSS
Процентиль: 34%
0.00134
Низкий
8.3 High
CVSS3
9.8 Critical
CVSS3
Дефекты
CWE-307
CWE-307