Vulnerabilities
Vulnerable Software
Hom.ee:  >> Brain Cube  Security Vulnerabilities
The USB firmware update script of homee Brain Cube v2 (2.28.2 and 2.28.4) devices allows an attacker with physical access to install compromised firmware. This occurs because of insufficient validation of the firmware image file and can lead to code execution on the device.
CVSS Score
6.8
EPSS Score
0.0
Published
2021-05-20
homee Brain Cube v2 (2.28.2 and 2.28.4) devices have sensitive SSH keys within downloadable and unencrypted firmware images. This allows remote attackers to use the support server as a SOCKS proxy.
CVSS Score
7.5
EPSS Score
0.005
Published
2021-05-20
The bootloader of the homee Brain Cube V2 through 2.23.0 allows attackers with physical access to gain root access by manipulating the U-Boot environment via the CLI after connecting to the internal UART interface.
CVSS Score
6.8
EPSS Score
0.001
Published
2020-03-20


Contact Us

Shodan ® - All rights reserved