All 3 CVE vulnerabilities found in homer, with AI-generated Chinese analysis, references, and POCs.
Vendor: sipcapture
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-62252 | Homer: Hardcoded Default Admin Password 'sipcapture' With No Forced Change on First Login CWE-798 | 9.8 | Critical | 2026-10-07 |
| CVE-2026-62253 | Homer: Complete Authentication Bypass When coordinator.jwt.secret Is Empty (Default) CWE-306 | 9.8 | Critical | 2026-10-07 |
| CVE-2026-62251 | Homer: Authenticated SQL Injection via Unvalidated rawquery Field in /api/v4/statistics/query CWE-89 | 8.1 | High | 2026-10-07 |
All 3 known CVE vulnerabilities affecting homer with full Chinese analysis, references, and POCs where available.