eQ-3 Homematic CCU2 and CCU3 with the CUxD AddOn before 2.3.0 installed allow administrative operations by unauthenticated attackers with access to the web interface, because features such as File-Browser and Shell Command (as well as Set root password) are exposed.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Homematic_ccu2_firmware | Eq-3 | * | 2.3.0 (excluding) |