CVE-2019-14423
17.10.2019, 14:15
A Remote Code Execution (RCE) issue in the addon CUx-Daemon 1.11a of the eQ-3 Homematic CCU-Firmware 2.35.16 until 2.45.6 allows remote authenticated attackers to execute system commands as root remotely via a simple HTTP request.
Vendor | Product | Version |
---|---|---|
eq-3 | cux-daemon | 1.11a ≤ 𝑥 ≤ 2.2.0 |
eq-3 | ccu2_firmware | 2.35.16 ≤ 𝑥 ≤ 2.45.6 |
𝑥
= Vulnerable software versions