CVE-2017-17691

Homeputer CL Studio fur HomeMatic 4.0 Rel 160808 and earlier uses cleartext to exchange the username and password between server and client instances, which allows remote attackers to obtain sensitive information via a man in the middle attack.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:contronics:homeputer_cl_studio_fur_homematic:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2018-09-07 22:29

Updated : 2024-02-28 16:48


NVD link : CVE-2017-17691

Mitre link : CVE-2017-17691

CVE.ORG link : CVE-2017-17691


JSON object : View

Products Affected

contronics

  • homeputer_cl_studio_fur_homematic
CWE
CWE-522

Insufficiently Protected Credentials