Vulnerability Details CVE-2014-7279
The Konke Smart Plug K does not require authentication for TELNET sessions, which allows remote attackers to obtain "equipment management authority" via TCP traffic to port 23.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.579
EPSS Ranking 98.0%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 10.0
Products affected by CVE-2014-7279
-
cpe:2.3:h:kankunit:konke_smart_plug:-
-
cpe:2.3:o:kankunit:konke_smart_plug_firmware:k