Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Unauthenticated password hash disclosure in the User.getUserPWD method in eQ-3 AG Homematic CCU3 3.43.15 and earlier allows remote attackers to retrieve the GUI password hashes of GUI users. This vulnerability can be exploited by unauthenticated attackers with access to the web interface.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
eQ-3 AG Homematic CCU3 访问控制错误漏洞
Vulnerability Description
eQ-3 AG Homematic CCU3是德国eQ-3 AG公司的一套家庭自动化控制设备。 eQ-3 AG Homematic CCU3 3.43.15及之前版本中的User.getUserPWD方法存在授权问题漏洞。该漏洞源于网络系统或产品中缺少身份验证措施或身份验证强度不足。
CVSS Information
N/A
Vulnerability Type
N/A