CVE

CVE-2020-7232

CVE-2020-7232

Evoko Home 1.31 devices allow remote attackers to obtain sensitive information (such as usernames and password hashes) via a WebSocket request, as demonstrated by the sockjs/224/uf1psgff/websocket URI at a wss:// URL.

Source: CVE-2020-7232

Exit mobile version