Exploits / Vulnerability Discovered : 2019-01-09 |
Type : webapps |
Platform : hardware
This exploit / vulnerability Heatmiser wifi thermostat 1.7 crosssite request forgery (update admin) is for educational purposes only and if it is used you will do on your own risk!
[+] Code ...
# Exploit Title: Heatmiser Wifi Thermostat 1.7 - Cross-Site Request Forgery
# Dork: intitle:"Heatmiser Wifi Thermostat" & you can use shodan
# Date: 2019-01-09
# Exploit Author: sajjadbnd
# Vendor Lnk: https://www.heatmiser.com/en/
# Product Link: https://www.heatmiser.com/en/wireless-thermostats/
# Tested on: Heatmiser Version 1.7
# CVE: N/A