Vulnerability Details CVE-2019-12496
An issue was discovered in Hybrid Group Gobot before 1.13.0. The mqtt subsystem skips verification of root CA certificates by default.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 43.9%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 5.0
Products affected by CVE-2019-12496
-
cpe:2.3:a:hybridgroup:gobot:0.1
-
cpe:2.3:a:hybridgroup:gobot:0.10.0
-
cpe:2.3:a:hybridgroup:gobot:0.11.0
-
cpe:2.3:a:hybridgroup:gobot:0.11.1
-
cpe:2.3:a:hybridgroup:gobot:0.12.0
-
cpe:2.3:a:hybridgroup:gobot:0.12.1
-
cpe:2.3:a:hybridgroup:gobot:0.13.0
-
cpe:2.3:a:hybridgroup:gobot:0.2
-
cpe:2.3:a:hybridgroup:gobot:0.3
-
cpe:2.3:a:hybridgroup:gobot:0.4
-
cpe:2.3:a:hybridgroup:gobot:0.5
-
cpe:2.3:a:hybridgroup:gobot:0.5.1
-
cpe:2.3:a:hybridgroup:gobot:0.5.2
-
cpe:2.3:a:hybridgroup:gobot:0.6
-
cpe:2.3:a:hybridgroup:gobot:0.6.1
-
cpe:2.3:a:hybridgroup:gobot:0.6.2
-
cpe:2.3:a:hybridgroup:gobot:0.6.3
-
cpe:2.3:a:hybridgroup:gobot:0.7
-
cpe:2.3:a:hybridgroup:gobot:0.7.1
-
cpe:2.3:a:hybridgroup:gobot:0.8
-
cpe:2.3:a:hybridgroup:gobot:0.8.1
-
cpe:2.3:a:hybridgroup:gobot:0.8.2
-
cpe:2.3:a:hybridgroup:gobot:1.0.0
-
cpe:2.3:a:hybridgroup:gobot:1.1.0
-
cpe:2.3:a:hybridgroup:gobot:1.10.0
-
cpe:2.3:a:hybridgroup:gobot:1.10.1
-
cpe:2.3:a:hybridgroup:gobot:1.10.2
-
cpe:2.3:a:hybridgroup:gobot:1.11.0
-
cpe:2.3:a:hybridgroup:gobot:1.11.1
-
cpe:2.3:a:hybridgroup:gobot:1.12.0
-
cpe:2.3:a:hybridgroup:gobot:1.2.0
-
cpe:2.3:a:hybridgroup:gobot:1.2.1
-
cpe:2.3:a:hybridgroup:gobot:1.3.0
-
cpe:2.3:a:hybridgroup:gobot:1.4.0
-
cpe:2.3:a:hybridgroup:gobot:1.5.0
-
cpe:2.3:a:hybridgroup:gobot:1.6.0
-
cpe:2.3:a:hybridgroup:gobot:1.6.1
-
cpe:2.3:a:hybridgroup:gobot:1.7.0
-
cpe:2.3:a:hybridgroup:gobot:1.7.1
-
cpe:2.3:a:hybridgroup:gobot:1.8.0
-
cpe:2.3:a:hybridgroup:gobot:1.9.0