CVE-2018-9162
31.03.2018, 22:29
Contec Smart Home 4.15 devices do not require authentication for new_user.php, edit_user.php, delete_user.php, and user.php, as demonstrated by changing the admin password and then obtaining control over doors.Enginsight
Vendor | Product | Version |
---|---|---|
contec-touch | smart_home_firmware | 4.15 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration