Description
The XMPP server in Logitech Harmony Hub before version 4.15.206 is vulnerable to authentication bypass via a crafted XMPP request. Remote attackers can use this vulnerability to gain access to the local API.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-7591 | The XMPP server in Logitech Harmony Hub before version 4.15.206 is vulnerable to authentication bypass via a crafted XMPP request. Remote attackers can use this vulnerability to gain access to the local API. |
References
| Link | Providers |
|---|---|
| https://www.tenable.com/security/research/tra-2018-47 |
|
History
No history.
Status: PUBLISHED
Assigner: tenable
Published:
Updated: 2024-09-17T02:26:25.523Z
Reserved: 2018-08-22T00:00:00.000Z
Link: CVE-2018-15721
No data.
Status : Modified
Published: 2018-12-20T21:29:00.680
Modified: 2024-11-21T03:51:20.473
Link: CVE-2018-15721
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD