PoC Index

CVE-2019-9726

HIGH 7.5EPSS 16.3%

Directory Traversal / Arbitrary File Read in eQ-3 AG Homematic CCU3 3.43.15 and earlier allows remote attackers to read arbitrary files of the device's filesystem. This vulnerability can be exploited by unauthenticated attackers with access to the web interface.

CVSS v3.0
7.5 HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS v2.0
5.0 MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
EPSS
16.34% chance of exploitation in the next 30 days, 97th percentile
Nuclei
high · CWE-22
Published
2019-05-13
Updated
2024-08-04

Nuclei templates (1)

References

Related