First published: Thu Jun 16 2022(Updated: )
Xiaomi Lamp 1 v2.0.4_0066 was discovered to be vulnerable to replay attacks. This allows attackers to to bypass the expected access restrictions and gain control of the switch and other functions via a crafted POST request.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mi Xiaomi Lamp 1 Firmware | =2.0.4_0066 | |
Mi Xiaomi Lamp 1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2022-31277.
The severity of CVE-2022-31277 is high with a CVSS score of 8.8.
The affected software is Xiaomi Lamp 1 with firmware version 2.0.4_0066.
Attackers can exploit CVE-2022-31277 by performing replay attacks using a crafted POST request.
There is currently no known fix available for CVE-2022-31277. It is recommended to contact the vendor for further information.