Description
Logitech Harmony Hub before version 4.15.206 contained two hard-coded accounts in the XMPP server that gave remote users access to the local API.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-7590 | Logitech Harmony Hub before version 4.15.206 contained two hard-coded accounts in the XMPP server that gave remote users access to the local API. |
References
| Link | Providers |
|---|---|
| https://www.tenable.com/security/research/tra-2018-47 |
|
History
No history.
Status: PUBLISHED
Assigner: tenable
Published:
Updated: 2024-09-16T20:59:02.021Z
Reserved: 2018-08-22T00:00:00.000Z
Link: CVE-2018-15720
No data.
Status : Modified
Published: 2018-12-20T21:29:00.633
Modified: 2024-11-21T03:51:20.360
Link: CVE-2018-15720
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD