Loading HuntDB...

GHSA-wm28-h52c-63m4

GitHub Security Advisory

⚠ Unreviewed CRITICAL Has CVE

Advisory Details

An exploitable buffer overflow vulnerability exists in Insteon Hub running firmware version 1012. The HTTP server implementation incorrectly handles the URL parameter during a firmware update request, leading to a buffer overflow on a global section. An attacker can send an HTTP GET request to trigger this vulnerability.

Related CVEs

Key Information

GHSA ID
GHSA-wm28-h52c-63m4
Published
May 13, 2022 1:01 AM
Last Modified
May 13, 2022 1:01 AM
CVSS Score
9.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 6, 2025 6:30 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.