Vulnerability Description
An issue was discovered in Luvion Grand Elite 3 Connect through 2020-02-25. Authentication to the device is based on a username and password. The root credentials are the same across all devices of this model.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Luvion | Grand Elite 3 Connect Firmware | <= 2020-02-25 |
| Luvion | Grand Elite 3 Connect | - |
Related Weaknesses (CWE)
References
- http://seclists.org/fulldisclosure/2024/Jul/14
- https://www.eurofins-cybersecurity.com/news/connected-devices-baby-monitor/ExploitThird Party Advisory
- http://seclists.org/fulldisclosure/2024/Jul/14
- https://www.eurofins-cybersecurity.com/news/connected-devices-baby-monitor/ExploitThird Party Advisory
FAQ
What is CVE-2020-11925?
CVE-2020-11925 is a vulnerability with a CVSS score of 8.8 (HIGH). An issue was discovered in Luvion Grand Elite 3 Connect through 2020-02-25. Authentication to the device is based on a username and password. The root credentials are the same across all devices of th...
How severe is CVE-2020-11925?
CVE-2020-11925 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-11925?
Check the references section above for vendor advisories and patch information. Affected products include: Luvion Grand Elite 3 Connect Firmware, Luvion Grand Elite 3 Connect.