CVE-2022-47758
9.8CRITICALNanoleaf firmware v7.1.1 and below is missing TLS verification, allowing attackers to execute arbitrary code via a DNS hijacking attack.
Publicado: 4/27/2023Actualizado: 1/31/2025
Descripción
Nanoleaf firmware v7.1.1 and below is missing TLS verification, allowing attackers to execute arbitrary code via a DNS hijacking attack.
Análisis IAImpulsado por IA
Productos Afectados
nanoleafnanoleaf_firmware
7.1.1
Referencias
- http://nanoleaf.comProduct
- https://pwning.tech/cve-2022-47758ExploitTechnical DescriptionThird Party Advisory
- https://pwning.tech/cve-2022-47758/
- http://nanoleaf.comProduct
- https://pwning.tech/cve-2022-47758ExploitTechnical DescriptionThird Party Advisory
- https://pwning.tech/cve-2022-47758/