vendor:
Heatmiser Wifi Thermostat
by:
d0wnp0ur
7.5
CVSS
HIGH
Credential Disclosure
200
CWE
Product Name: Heatmiser Wifi Thermostat
Affected Version From: 1.7
Affected Version To: 1.7
Patch Exists: YES
Related CWE: N/A
CPE: a:heatmiser:heatmiser_wifi_thermostat
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Heatmiser Version 1.7
2018
Heatmiser Wifi Thermostat 1.7 – Credential Disclosure
This exploit allows an attacker to gain access to the username and password of a vulnerable Heatmiser thermostat by using a wget command to copy the disclosing page and then using grep and awk commands to extract the credentials.
Mitigation:
Users should ensure that their Heatmiser thermostats are updated to the latest version and that they are using strong passwords.