eQ-3 Homematic CCU2 prior to 2.47.10 and CCU3 prior to 3...
Critical severity
Unreviewed
Published
May 24, 2022
to the GitHub Advisory Database
•
Updated Apr 11, 2024
Description
Published by the National Vulnerability Database
Aug 14, 2019
Published to the GitHub Advisory Database
May 24, 2022
Last updated
Apr 11, 2024
eQ-3 Homematic CCU2 prior to 2.47.10 and CCU3 prior to 3.47.10 JSON API has Improper Access Control for Interface.***Metadata related operations, resulting in the ability to read, set and deletion of Metadata.
References