First published: Fri Dec 27 2019(Updated: )
INSTEON Hub 2242-222 lacks Web and API authentication
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Insteon Hub Firmware | =2242-222 | |
INSTEON Hub |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-4859 is rated as a high severity vulnerability due to its lack of web and API authentication.
To fix CVE-2013-4859, ensure that the firmware is updated to the latest version that includes proper authentication mechanisms.
The risks of CVE-2013-4859 include unauthorized access to the INSTEON Hub, allowing attackers to control devices connected to the hub.
CVE-2013-4859 specifically affects the INSTEON Hub 2242-222 firmware.
Yes, CVE-2013-4859 can be exploited remotely due to the absence of web and API authentication.