Vulnerability Details CVE-2019-10122
eQ-3 HomeMatic CCU2 devices before 2.41.9 and CCU3 devices before 3.43.16 have buffer overflows in the ReGa ise GmbH HTTP-Server 2.0 component, aka HMCCU-179. This may lead to remote code execution.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.035
EPSS Ranking 86.9%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
Products affected by CVE-2019-10122
-
-
-
cpe:2.3:o:eq-3:ccu2_firmware:-
-
cpe:2.3:o:eq-3:ccu2_firmware:2.11.6
-
cpe:2.3:o:eq-3:ccu2_firmware:2.11.9
-
cpe:2.3:o:eq-3:ccu2_firmware:2.13.7
-
cpe:2.3:o:eq-3:ccu2_firmware:2.15.2
-
cpe:2.3:o:eq-3:ccu2_firmware:2.15.5
-
cpe:2.3:o:eq-3:ccu2_firmware:2.17.14
-
cpe:2.3:o:eq-3:ccu2_firmware:2.17.15
-
cpe:2.3:o:eq-3:ccu2_firmware:2.17.16
-
cpe:2.3:o:eq-3:ccu2_firmware:2.19.9
-
cpe:2.3:o:eq-3:ccu2_firmware:2.21.10
-
cpe:2.3:o:eq-3:ccu2_firmware:2.25.12
-
cpe:2.3:o:eq-3:ccu2_firmware:2.25.14
-
cpe:2.3:o:eq-3:ccu2_firmware:2.25.15
-
cpe:2.3:o:eq-3:ccu2_firmware:2.27.7
-
cpe:2.3:o:eq-3:ccu2_firmware:2.27.8
-
cpe:2.3:o:eq-3:ccu2_firmware:2.29.18
-
cpe:2.3:o:eq-3:ccu2_firmware:2.29.19
-
cpe:2.3:o:eq-3:ccu2_firmware:2.29.22
-
cpe:2.3:o:eq-3:ccu2_firmware:2.29.23
-
cpe:2.3:o:eq-3:ccu2_firmware:2.3.17
-
cpe:2.3:o:eq-3:ccu2_firmware:2.3.18
-
cpe:2.3:o:eq-3:ccu2_firmware:2.31.23
-
cpe:2.3:o:eq-3:ccu2_firmware:2.31.25
-
cpe:2.3:o:eq-3:ccu2_firmware:2.35.15
-
cpe:2.3:o:eq-3:ccu2_firmware:2.35.16
-
cpe:2.3:o:eq-3:ccu2_firmware:2.41.5
-
cpe:2.3:o:eq-3:ccu2_firmware:2.41.8
-
cpe:2.3:o:eq-3:ccu2_firmware:2.5.4
-
cpe:2.3:o:eq-3:ccu2_firmware:2.7.16
-
cpe:2.3:o:eq-3:ccu2_firmware:2.7.17
-
cpe:2.3:o:eq-3:ccu2_firmware:2.7.8
-
cpe:2.3:o:eq-3:ccu2_firmware:2.9.10
-
cpe:2.3:o:eq-3:ccu2_firmware:2.9.12
-
cpe:2.3:o:eq-3:ccu3_firmware:2.15.5
-
cpe:2.3:o:eq-3:ccu3_firmware:2.17.15
-
cpe:2.3:o:eq-3:ccu3_firmware:2.19.9
-
cpe:2.3:o:eq-3:ccu3_firmware:2.19.9-1
-
cpe:2.3:o:eq-3:ccu3_firmware:2.21.10
-
cpe:2.3:o:eq-3:ccu3_firmware:2.25.12
-
cpe:2.3:o:eq-3:ccu3_firmware:2.25.15
-
cpe:2.3:o:eq-3:ccu3_firmware:2.27.7
-
cpe:2.3:o:eq-3:ccu3_firmware:2.27.8
-
cpe:2.3:o:eq-3:ccu3_firmware:2.27.8-1
-
cpe:2.3:o:eq-3:ccu3_firmware:2.29.22
-
cpe:2.3:o:eq-3:ccu3_firmware:2.29.22-1
-
cpe:2.3:o:eq-3:ccu3_firmware:2.31.23
-
cpe:2.3:o:eq-3:ccu3_firmware:2.31.25
-
cpe:2.3:o:eq-3:ccu3_firmware:2.35.16
-
cpe:2.3:o:eq-3:ccu3_firmware:3.37.8
-
cpe:2.3:o:eq-3:ccu3_firmware:3.41.11
-
cpe:2.3:o:eq-3:ccu3_firmware:3.41.7
-
cpe:2.3:o:eq-3:ccu3_firmware:3.43.15