Vulnerability index

Browse CVEs

9 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2016-5053 OSRAM SYLVANIA Osram Lightify Home before 2016-07-26 allows remote attackers to execute arbitrary commands via TCP port 4000. Lightify Home after 1.6.1 Fix from $2,3002017-04-10 HIGH 7.5 CVE-2016-5051 OSRAM SYLVANIA Osram Lightify Home before 2016-07-26 stores a PSK in cleartext under /private/var/mobile/Containers/Data/Application. Lightify Home after 1.6.1 Fix from $1,9502017-04-10 HIGH 7.5 CVE-2016-5052 OSRAM SYLVANIA Osram Lightify Home through 2016-07-26 does not use SSL pinning. Lightify Home after 1.6.1 Fix from $1,9502017-04-10 HIGH 7.5 CVE-2016-5054 OSRAM SYLVANIA Osram Lightify Home through 2016-07-26 allows Zigbee replay. Lightify Home after 1.6.1 Fix from $1,9502017-04-10 HIGH 7.5 CVE-2016-5056 OSRAM SYLVANIA Osram Lightify Pro before 2016-07-26 uses only 8 hex digits for a PSK. Lightify Pro No fix yet Fix from $1,9502017-04-10 HIGH 7.5 CVE-2016-5057 OSRAM SYLVANIA Osram Lightify Pro through 2016-07-26 does not use SSL pinning. Lightify Pro No fix yet Fix from $1,9502017-04-10 HIGH 7.5 CVE-2016-5058 OSRAM SYLVANIA Osram Lightify Pro through 2016-07-26 allows Zigbee replay. Lightify Pro No fix yet Fix from $1,9502017-04-10 MEDIUM 6.5 CVE-2016-5059 OSRAM SYLVANIA Osram Lightify Pro before 2016-07-26 allows attackers to obtain sensitive information by reading screenshots under /private/var/mobile… Lightify Pro No fix yet Fix from $1,6002017-04-10 MEDIUM 6.1 CVE-2016-5055 OSRAM SYLVANIA Osram Lightify Pro before 2016-07-26 has XSS in the username field and Wireless Client Mode configuration page. Lightify Pro No fix yet Fix from $1,6002017-04-10