Vulnerabilities > Evoko > Home > 1.37

DATE CVE VULNERABILITY TITLE RISK
2020-01-19 CVE-2020-7232 Unspecified vulnerability in Evoko Home 1.31/1.37
Evoko Home devices 1.31 through 1.37 allow remote attackers to obtain sensitive information (such as usernames and password hashes) via a WebSocket request, as demonstrated by the sockjs/224/uf1psgff/websocket URI at a wss:// URL.
network
low complexity
evoko
7.5