Search Results (2 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2019-25235 1 Smartwares 1 Home Easy 2025-12-29 9.8 Critical
Smartwares HOME easy 1.0.9 contains an authentication bypass vulnerability that allows unauthenticated attackers to access administrative web pages by disabling JavaScript. Attackers can navigate to multiple administrative endpoints and to bypass client-side validation and access sensitive system information.
CVE-2020-21997 1 Smartwares 2 Home Easy, Home Easy Firmware 2024-11-21 7.5 High
Smartwares HOME easy <=1.0.9 is vulnerable to an unauthenticated database backup download and information disclosure vulnerability. An attacker could disclose sensitive and clear-text information resulting in authentication bypass, session hijacking and full system control.