Логотип exploitDog
bind:CVE-2024-42470
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-42470

Количество 2

Количество 2

nvd логотип

CVE-2024-42470

больше 1 года назад

openHAB, a provider of open-source home automation software, has add-ons including the visualization add-on CometVisu. Several endpoints in versions prior to 4.2.1 of the CometVisu add-on of openHAB don't require authentication. This makes it possible for unauthenticated attackers to modify or to steal sensitive data. This issue may lead to sensitive information disclosure. Users should upgrade to version 4.2.1 of the CometVisu add-on of openHAB to receive a patch.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-3g4c-hjhr-73rj

больше 1 года назад

CometVisu Backend for openHAB has a sensitive information disclosure vulnerability

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-42470

openHAB, a provider of open-source home automation software, has add-ons including the visualization add-on CometVisu. Several endpoints in versions prior to 4.2.1 of the CometVisu add-on of openHAB don't require authentication. This makes it possible for unauthenticated attackers to modify or to steal sensitive data. This issue may lead to sensitive information disclosure. Users should upgrade to version 4.2.1 of the CometVisu add-on of openHAB to receive a patch.

CVSS3: 6.5
1%
Низкий
больше 1 года назад
github логотип
GHSA-3g4c-hjhr-73rj

CometVisu Backend for openHAB has a sensitive information disclosure vulnerability

CVSS3: 6.5
1%
Низкий
больше 1 года назад

Уязвимостей на страницу