← Volver a CVEs
CVE-2018-17917
N/ADescripcion
All versions of Hangzhou Xiongmai Technology Co., Ltd XMeye P2P Cloud Server may allow an attacker to use MAC addresses to enumerate potential Cloud IDs. Using this ID, the attacker can discover and connect to valid devices using one of the supported apps.
Detalles CVE
Puntuacion CVSS v3.1N/A
Publicado10/10/2018
Ultima modificacion11/21/2024
Fuentenvd
Avistamientos honeypot0
Productos afectados
xiongmaitech:xmeye_p2p_cloud_server
Debilidades (CWE)
CWE-341CWE-200
Referencias
https://ics-cert.us-cert.gov/advisories/ICSA-18-282-06(ics-cert@hq.dhs.gov)
https://ics-cert.us-cert.gov/advisories/ICSA-18-282-06(af854a3a-2127-422b-91ae-364da2661108)
Correlaciones IOC
Sin correlaciones registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.