Vulnerabilities
Vulnerable Software
Vulnerability whereby an attacker could send a malicious link to an authenticated operator, which could allow remote attackers to perform a clickjacking attack on Sunny WebBox firmware version 1.6.1 and earlier.
CVSS Score
6.4
EPSS Score
0.001
Published
2024-02-26
An attacker could send a malicious link to an authenticated operator, which may allow remote attackers to perform actions with the permissions of the user on the Sunny WebBox Firmware Version 1.6 and prior. This device uses IP addresses to maintain communication after a successful login, which would increase the ease of exploitation.
CVSS Score
8.8
EPSS Score
0.002
Published
2019-10-09


Contact Us

Shodan ® - All rights reserved