← Back

CVE-2017-14447

nvd nist
Published: Aug 6, 2018Modified: Nov 21, 2024

JSON object

Loading...
7.7
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:H/A:N
Exploitability: 3.1 / Impact: 4.0
Source: NVD

Description

An exploitable buffer overflow vulnerability exists in the PubNub message handler for the 'ad' channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary data. An attacker should send an authenticated HTTP request to trigger this vulnerability.

Affected (1)

1 product
Hub Firmware
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 1012
Running on/withPlatform Versions
Insteon
Hub
All versions

References (2)

Source: talos-cna@cisco.com
ExploitThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party Advisory

Timeline

No history available yet.