Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2019-18980

EPSS 0.11% · P29
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2019-18980

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
On Signify Philips Taolight Smart Wi-Fi Wiz Connected LED Bulb 9290022656 devices, an unprotected API lets remote users control the bulb's operation. Anyone can turn the bulb on or off, or change its color or brightness remotely. There is no authentication or encryption to use the control API. The only requirement is that the attacker have network access to the bulb.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Signify Philips Taolight Smart Wi-Fi Wiz Connected LED Bulb 9290022656 访问控制错误漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Signify Philips Taolight Smart Wi-Fi Wiz Connected LED Bulb 9290022656是荷兰Signify公司的一款智能灯泡。 Signify Philips Taolight Smart Wi-Fi Wiz Connected LED Bulb 9290022656中存在访问控制错误漏洞。该漏洞源于网络系统或产品未正确限制来自未授权角色的资源访问。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2019-18980

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2019-18980

登录查看更多情报信息。

Same Patch Batch · n/a · 2019-11-14 · 226 CVEs total

CVE-2019-15389Haier A6 访问控制错误漏洞
CVE-2019-15403ASUS ZenFone 3s Max 访问控制错误漏洞
CVE-2019-15402ASUS ASUS_A002_2 访问控制错误漏洞
CVE-2019-15401ASUS ASUS_A002 访问控制错误漏洞
CVE-2019-15400ASUS ZenFone 3 Ultra 访问控制错误漏洞
CVE-2019-15399ASUS ZenFone 5Q 访问控制错误漏洞
CVE-2019-15398ASUS ZenFone 4 Selfie 访问控制错误漏洞
CVE-2019-15397ASUS ZenFone Max 4 访问控制错误漏洞
CVE-2019-15396ASUS ZenFone 3 访问控制错误漏洞
CVE-2019-15395ASUS ZenFone 3s Max 访问控制错误漏洞
CVE-2019-15394ASUS ZenFone 5 Selfie 访问控制错误漏洞
CVE-2019-15393ASUS ZenFone Live 访问控制错误漏洞
CVE-2019-15392ASUS ZenFone 4 Selfie 访问控制错误漏洞
CVE-2019-15391ASUS ZenFone 4 Selfie 访问控制错误漏洞
CVE-2019-15390Haier G8 访问控制错误漏洞
CVE-2019-15378Panasonic Eluga Ray 600 访问控制错误漏洞
CVE-2019-15381BQ 5515L 访问控制错误漏洞
CVE-2019-15380ASN IP Fly Photo Pro 安全漏洞
CVE-2019-15379Walton Primo G3 访问控制错误漏洞
CVE-2019-15382华富瑞科技 Cubot Nova 访问控制错误漏洞

Showing top 20 of 226 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2019-18980

No comments yet


Leave a comment