Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Jura Internet Connection Kit for the Jura Impressa F90 coffee maker does not properly restrict access to privileged functions, which allows remote attackers to cause a denial of service (physical damage), modify coffee settings, and possibly execute code via a crafted request. NOTE: this issue is being included in CVE because the denial of service may include financial loss or water damage.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Juracapecoffee Jura Internet连接工具特权许可和访问控制漏洞
Vulnerability Description
Jura Impressa F90 咖啡机上用的Jura Internet 连接工具存在特权许可和访问控制漏洞。由于Jura Internet 连接工具没有严格地限制访问特权功能的权限,这使得远程攻击者可以借助一个特制的请求,引起拒绝服务攻击(物理内存破坏),修改coffee设置以及可能执行代码。
CVSS Information
N/A
Vulnerability Type
N/A