Hub
Vendor:
First CVE: Aug 2, 2018 · Active for 7 years
96
Total CVEs
More Total CVEs than 99% of tracked products
32.0
Avg CVEs / Year
Higher CVE frequency than 99% of tracked products
9.7
Avg CVSS
Higher Avg CVSS than 87% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Hub over time
Volume of CVEsAvg CVSS Base Score
First CVE
Aug 2, 2018
7 years ago
Most Recent CVE
Jan 12, 2023
1,291 days ago
CVE Severity & Scoring
Hub96 CVEs
9%
91%
All CVEs352,713 CVEs
45%
40%
11%
HighCritical
Attack Vector
Local0 (0.0%)
Network96 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low93 (96.9%)
High3 (3.1%)
Unknown0 (0.0%)
User Interaction
None96 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low94 (97.9%)
High0 (0.0%)
None2 (2.1%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (96 CVEs).
96 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-16334CRITICAL Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted comman | Jan 11, 2023 | 9.9 | 32 | NO | NO |
CVE-2013-4859HIGH INSTEON Hub 2242-222 lacks Web and API authentication | Dec 27, 2019 | 8.1 | 32 | NO | YES |
CVE-2017-16347CRITICAL An attacker could send an authenticated HTTP request to trigger this vulnerability in Insteon Hub running firmware version 1012. At 0x9d01e7d4 the value for the s_vol key is copied | Aug 2, 2018 | 9.9 | 32 | NO | NO |
CVE-2017-16346CRITICAL An attacker could send an authenticated HTTP request to trigger this vulnerability in Insteon Hub running firmware version 1012. At 0x9d01c368 the value for the s_mac key is copied | Aug 2, 2018 | 9.9 | 32 | NO | NO |
CVE-2017-16331CRITICAL Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted comman | Jan 11, 2023 | 9.9 | 31 | NO | NO |
CVE-2017-16330CRITICAL Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted comman | Jan 11, 2023 | 9.9 | 31 | NO | NO |
CVE-2017-16329CRITICAL Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted comman | Jan 11, 2023 | 9.9 | 31 | NO | NO |
CVE-2017-16328CRITICAL Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted comman | Jan 11, 2023 | 9.9 | 31 | NO | NO |
CVE-2017-16327CRITICAL Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted comman | Jan 11, 2023 | 9.9 | 31 | NO | NO |
CVE-2017-16325CRITICAL Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted comman | Jan 11, 2023 | 9.9 | 31 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (96 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
1.0% of CVEs· 87th percentile
Social Chatter
Signals from CVEs in this product scope (96 CVEs).
Media Mentions
Signals from CVEs in this product scope (96 CVEs).
Top CNAs Publishing CVEs For Hub
Top CWEs
Versions
No cataloged versions.