cve/2023/CVE-2023-42143.md
2024-06-18 02:51:15 +02:00

805 B

CVE-2023-42143

Description

Missing Integrity Check in Shelly TRV 20220811-152343/v2.1.8@5afc928c allows malicious users to create a backdoor by redirecting the device to an attacker-controlled machine which serves the manipulated firmware file. The device is updated with the manipulated firmware.

POC

Reference

Github

No PoCs found on GitHub currently.