Vulnerabilities > Juuko

DATE CVE VULNERABILITY TITLE RISK
2020-11-02 CVE-2018-19025 Authentication Bypass by Capture-replay vulnerability in Juuko K-808 Firmware
In JUUKO K-808, an attacker could specially craft a packet that encodes an arbitrary command, which could be executed on the K-808 (Firmware versions prior to numbers ending ...9A, ...9B, ...9C, etc.).
network
low complexity
juuko CWE-294
critical
9.8
2020-11-02 CVE-2018-17932 Authentication Bypass by Capture-replay vulnerability in Juuko K-800 Firmware
JUUKO K-800 (Firmware versions prior to numbers ending ...9A, ...9B, ...9C, etc.) is vulnerable to a replay attack and command forgery, which could allow attackers to replay commands, control the device, view commands, or cause the device to stop running.
network
low complexity
juuko CWE-294
critical
9.8