Remote Code Execution in eQ-3 HomeMatic CCU3 Firmware Version 3.41.11 via ReGa.runScript Method

Remote Code Execution in eQ-3 HomeMatic CCU3 Firmware Version 3.41.11 via ReGa.runScript Method

CVE-2019-15850 · HIGH Severity

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

eQ-3 HomeMatic CCU3 firmware version 3.41.11 allows Remote Code Execution in the ReGa.runScript method. An authenticated attacker can easily execute code and compromise the system.

Learn more about our Web Application Penetration Testing UK.