HIGH · 10.0

CVE-2008-7173

The Jura Internet Connection Kit for the Jura Impressa F90 coffee maker does not properly restrict access to privileged functions, which allows remote attackers to cause a denial of service (physical ...

Vulnerability Description

The Jura Internet Connection Kit for the Jura Impressa F90 coffee maker does not properly restrict access to privileged functions, which allows remote attackers to cause a denial of service (physical damage), modify coffee settings, and possibly execute code via a crafted request. NOTE: this issue is being included in CVE because the denial of service may include financial loss or water damage.

CVSS Score

10.0

HIGH

AV:N/AC:L/Au:N/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
JuracapecoffeeInternet Connectivity KitAll versions
JuracapecoffeeJura Impressaf90

Related Weaknesses (CWE)

References

FAQ

What is CVE-2008-7173?

CVE-2008-7173 is a vulnerability with a CVSS score of 10.0 (HIGH). The Jura Internet Connection Kit for the Jura Impressa F90 coffee maker does not properly restrict access to privileged functions, which allows remote attackers to cause a denial of service (physical ...

How severe is CVE-2008-7173?

CVE-2008-7173 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2008-7173?

Check the references section above for vendor advisories and patch information. Affected products include: Juracapecoffee Internet Connectivity Kit, Juracapecoffee Jura Impressa.