Show filters
7 Total Results
Displaying 1-7 of 7
Sort by:
Attacker Value
Unknown

CVE-2023-42189

Disclosure Date: October 10, 2023 (last updated February 16, 2024)
Insecure Permissions vulnerability in Connectivity Standards Alliance Matter Official SDK v.1.1.0.0 , Nanoleaf Light strip v.3.5.10, Govee LED Strip v.3.00.42, switchBot Hub2 v.1.0-0.8, Phillips hue hub v.1.59.1959097030, and yeelight smart lamp v.1.12.69 allows a remote attacker to cause a denial of service via a crafted script to the KeySetRemove function.
Attacker Value
Unknown

CVE-2023-36160

Disclosure Date: September 16, 2023 (last updated October 08, 2023)
An issue was discovered in Qubo Smart Plug10A version HSP02_01_01_14_SYSTEM-10 A, allows local attackers to gain sensitive information and other unspecified impact via UART console.
Attacker Value
Unknown

CVE-2023-36161

Disclosure Date: September 11, 2023 (last updated October 08, 2023)
An issue was discovered in Qubo Smart Plug 10A version HSP02_01_01_14_SYSTEM-10A, allows attackers to cause a denial of service (DoS) via Wi-Fi deauthentication.
Attacker Value
Unknown

CVE-2023-33768

Disclosure Date: July 13, 2023 (last updated October 08, 2023)
Incorrect signature verification of the firmware during the Device Firmware Update process of Belkin Wemo Smart Plug WSP080 v1.2 allows attackers to cause a Denial of Service (DoS) via a crafted firmware file.
Attacker Value
Unknown

CVE-2019-15745

Disclosure Date: August 29, 2019 (last updated November 27, 2024)
The Eques elf smart plug and the mobile app use a hardcoded AES 256 bit key to encrypt the commands and responses between the device and the app. The communication happens over UDP port 27431. An attacker on the local network can use the same key to encrypt and send commands to discover all smart plugs in a network, take over control of a device, and perform actions such as turning it on and off.
0
Attacker Value
Unknown

Wemo Insight Smart Plug - Remote Code Execution vulnerability

Disclosure Date: August 21, 2018 (last updated November 08, 2023)
Stack-based Buffer Overflow vulnerability in libUPnPHndlr.so in Belkin Wemo Insight Smart Plug allows remote attackers to bypass local security protection via a crafted HTTP post packet.
Attacker Value
Unknown

CVE-2014-7279

Disclosure Date: March 23, 2017 (last updated November 26, 2024)
The Konke Smart Plug K does not require authentication for TELNET sessions, which allows remote attackers to obtain "equipment management authority" via TCP traffic to port 23.
0