Логотип exploitDog
bind:CVE-2025-15114
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-15114

Количество 2

Количество 2

nvd логотип

CVE-2025-15114

около 1 месяца назад

Ksenia Security Lares 4.0 Home Automation version 1.6 contains a critical security flaw that exposes the alarm system PIN in the 'basisInfo' XML file after authentication. Attackers can retrieve the PIN from the server response to bypass security measures and disable the alarm system without additional authentication.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-5xw5-83cp-4rjf

около 1 месяца назад

Ksenia Security Lares 4.0 Home Automation version 1.6 contains a critical security flaw that exposes the alarm system PIN in the 'basisInfo' XML file after authentication. Attackers can retrieve the PIN from the server response to bypass security measures and disable the alarm system without additional authentication.

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-15114

Ksenia Security Lares 4.0 Home Automation version 1.6 contains a critical security flaw that exposes the alarm system PIN in the 'basisInfo' XML file after authentication. Attackers can retrieve the PIN from the server response to bypass security measures and disable the alarm system without additional authentication.

CVSS3: 9.8
0%
Низкий
около 1 месяца назад
github логотип
GHSA-5xw5-83cp-4rjf

Ksenia Security Lares 4.0 Home Automation version 1.6 contains a critical security flaw that exposes the alarm system PIN in the 'basisInfo' XML file after authentication. Attackers can retrieve the PIN from the server response to bypass security measures and disable the alarm system without additional authentication.

CVSS3: 9.8
0%
Низкий
около 1 месяца назад

Уязвимостей на страницу