Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in myStrom WiFi Switch V1 before 2.66, WiFi Switch V2 before 3.80, WiFi Switch EU before 3.80, WiFi Bulb before 2.58, WiFi LED Strip before 3.80, WiFi Button before 2.73, and WiFi Button Plus before 2.73. Devices did not authenticate themselves to the cloud in device to cloud communication. This lack of device authentication allowed an attacker to impersonate any device by guessing or learning their MAC address.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
多款myStrom WiFi产品安全漏洞
Vulnerability Description
myStrom WiFi Switch V1都是德国myStrom公司的产品。myStrom WiFi Switch V1是一款智能插头。myStrom WiFi Bulb是一款智能灯泡产品。 多款myStrom WiFi产品中存在安全漏洞,该漏洞源于设备没有向云端进行身份验证。攻击者可通过猜测或获取设备MAC地址利用该漏洞冒充设备,并向设备云端统计数据注入虚假度量指标。以下产品和版本受到影响:myStrom WiFi Switch V1 2.66之前版本,WiFi Switch V2 3.80之前版本,
CVSS Information
N/A
Vulnerability Type
N/A