Sensitive Information Disclosure in Zipato Zipabox Smart Home Controller
CVE-2018-15125

7.5HIGH

Key Information:

Vendor
Kaspersky
Vendor
CVE Published:
13 August 2018

Summary

The Zipato Zipabox Smart Home Controller is susceptible to a vulnerability that allows remote attackers to access sensitive information. This flaw increases the potential for further exploitation, as attackers could leverage the exposed data to target additional assets within the smart home ecosystem. It is crucial for users of the Zipabox to ensure that their systems are up-to-date and secure to mitigate the risk associated with this type of information disclosure.

Affected Version(s)

Zipato Zipabox Smart Home Controller BOARD REV - 1

Zipato Zipabox Smart Home Controller SYSTEM Version -118

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.