cve/2020/CVE-2020-7232.md
2024-06-09 00:33:16 +00:00

793 B

CVE-2020-7232

Description

Evoko Home devices 1.31 through 1.37 allow remote attackers to obtain sensitive information (such as usernames and password hashes) via a WebSocket request, as demonstrated by the sockjs/224/uf1psgff/websocket URI at a wss:// URL.

POC

Reference

Github

No PoCs found on GitHub currently.