CVE Vulnerabilities

CVE-2014-7279

Published: Mar 23, 2017 | Modified: Mar 28, 2017
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

The Konke Smart Plug K does not require authentication for TELNET sessions, which allows remote attackers to obtain equipment management authority via TCP traffic to port 23.

Affected Software

Name Vendor Start Version End Version
Konke_smart_plug_firmware Kankunit k (including) k (including)

References