Honeywell International Tuxedo Touch是美国霍尼韦尔国际(Honeywell International)公司的一套适用于企业和家庭的自动化触摸控制器,它可通过Web或相关的App控制摄像头、恒温器、灯具、智能锁、遮光帘等。 Honeywell International Tuxedo Touch 5.2.19.0_VA之前版本中存在跨站请求伪造漏洞。远程攻击者可利用该漏洞以用户权限执行未授权操作,向家庭自动化设备发送命令。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2015-1840 | Ruby on Rails jquery-ujs和jquery-rails 权限许可和访问控制 漏洞 | |
| CVE-2015-1872 | FFmpeg 拒绝服务漏洞 | |
| CVE-2015-3224 | Ruby on Rails Web Console 代码注入漏洞 | |
| CVE-2015-3225 | Ruby on Rails Rack 拒绝服务漏洞 | |
| CVE-2015-3226 | Ruby on Rails Active Support 跨站脚本漏洞 | |
| CVE-2015-3227 | Ruby on Rails Active Support 远程拒绝服务漏洞 | |
| CVE-2015-2847 | Honeywell International Tuxedo Touch 安全漏洞 | |
| CVE-2015-2975 | Research Artisan Lite 安全漏洞 | |
| CVE-2015-4945 | IBM Maximo Anywhere 信息泄露漏洞 |
No comments yet