VendorsHomeebrain_cube_core2.28.2
Vulnerabilities

Homee Hom.ee Brain Cube Core 2.28.2

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2020-24396
homee Brain Cube v2 (2.28.2 and 2.28.4) devices have sensitive SSH keys within downloadable and unencrypted firmware images. This allows remote attackers to use the support server as a SOCKS proxy.
Published 2021-05-20 · Modified
7.5EPSS 0.019
CVE-2020-24395
The USB firmware update script of homee Brain Cube v2 (2.28.2 and 2.28.4) devices allows an attacker with physical access to install compromised firmware. This occurs because of insufficient validation of the firmware image file and can lead to code execution on the device.
Published 2021-05-20 · Modified
7.2EPSS 0.002