Files
CVEs-PoC/2020/CVE-2020-7232.md
T
2024-05-25 21:48:12 +02:00

720 B

CVE-2020-7232

Description

Evoko Home devices 1.31 through 1.37 allow remote attackers to obtain sensitive information (such as usernames and password hashes) via a WebSocket request, as demonstrated by the sockjs/224/uf1psgff/websocket URI at a wss:// URL.

POC

Reference

Github

No PoCs found on GitHub currently.