Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 2

Количество 2

nvd логотип

CVE-2024-42470

около 2 лет назад

openHAB, a provider of open-source home automation software, has add-ons including the visualization add-on CometVisu. Several endpoints in versions prior to 4.2.1 of the CometVisu add-on of openHAB don't require authentication. This makes it possible for unauthenticated attackers to modify or to steal sensitive data. This issue may lead to sensitive information disclosure. Users should upgrade to version 4.2.1 of the CometVisu add-on of openHAB to receive a patch.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-3g4c-hjhr-73rj

около 2 лет назад

CometVisu Backend for openHAB has a sensitive information disclosure vulnerability

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-42470

openHAB, a provider of open-source home automation software, has add-ons including the visualization add-on CometVisu. Several endpoints in versions prior to 4.2.1 of the CometVisu add-on of openHAB don't require authentication. This makes it possible for unauthenticated attackers to modify or to steal sensitive data. This issue may lead to sensitive information disclosure. Users should upgrade to version 4.2.1 of the CometVisu add-on of openHAB to receive a patch.

CVSS3: 6.5
1%
Низкий
около 2 лет назад
github логотип
GHSA-3g4c-hjhr-73rj

CometVisu Backend for openHAB has a sensitive information disclosure vulnerability

CVSS3: 6.5
1%
Низкий
около 2 лет назад

Уязвимостей на страницу