Metrics
Affected Vendors & Products
Thu, 08 Jan 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 08 Jan 2026 10:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Inim
Inim smartliving Smartlan |
|
| Vendors & Products |
Inim
Inim smartliving Smartlan |
Wed, 07 Jan 2026 23:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Smartliving SmartLAN/G/SI <=6.x contains an unauthenticated server-side request forgery vulnerability in the GetImage functionality through the 'host' parameter. Attackers can exploit the onvif.cgi endpoint by specifying external domains to bypass firewalls and perform network enumeration through arbitrary HTTP requests. | |
| Title | INIM Electronics Smartliving SmartLAN/G/SI <=6.x Unauthenticated SSRF via GetImage | |
| Weaknesses | CWE-918 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-01-08T19:24:33.517Z
Reserved: 2026-01-06T16:07:08.528Z
Link: CVE-2019-25290
Updated: 2026-01-08T19:24:31.252Z
Status : Awaiting Analysis
Published: 2026-01-08T00:15:58.973
Modified: 2026-01-08T18:08:18.457
Link: CVE-2019-25290
No data.
OpenCVE Enrichment
Updated: 2026-01-08T09:47:55Z