high·Product Based Web Vulnerabilities·Updated Jan 3, 2024

CVE-2020-19360 Scanner

CVE-2020-19360 scanner - Local File Inclusion (LFI) vulnerability in FHEM

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsurl
CostFree
0
Times Used
by S4E users
0
Assets Scanned
domains & IPs
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2020-19360
7.5
CVSS

Local file inclusion in FHEM 6.0 allows in fhem/FileLog_logWrapper file parameter can allow an attacker to include a file, which can lead to sensitive information disclosure.

Attack Vector
-
Privileges Req.
-
User Interaction
-
Affected
n/aby n/a
n/a
Updated Aug 19, 2026View on NVD →
Detail

FHEM is an open-source platform designed for home automation technologies. It acts as a server with a variety of modules and plugins that can be used for controlling and managing various devices such as thermostats, sensors, and switches. FHEM provides its users with the ability to configure, monitor, and automate devices with ease.

Recently, a vulnerability has been detected in FHEM, designated as CVE-2020-19360. This vulnerability appears in the fhem/FileLog_logWrapper file parameter, which hackers can exploit to include a file that can reveal sensitive information. The vulnerability can be exploited remotely without the need for authentication, giving attackers an opportunity to gain access to the system without any restrictions. 

If successfully exploited, the CVE-2020-19360 vulnerability can lead to severe consequences for affected users. Hackers can use this vulnerability to gain access to sensitive information such as login credentials, personal data, financial information, and more. Furthermore, an attacker can use this information to launch further attacks on the user's system or to sell sensitive data on the dark web.

With the pro security features available on s4e.io platform, users can easily track and manage the security of their digital assets. The platform offers a variety of tools and resources to help users protect their systems and assets from vulnerabilities and potential attacks. By leveraging these tools, users can stay aware of any new threats and minimize the risk of being exploited. 

 

REFERENCES

Solution Advice

To protect against the CVE-2020-19360 vulnerability, we suggest the following precautions:

  • Update the FHEM platform to the latest version to fix the vulnerability
  • Avoid using third-party modules and plugins from untrusted sources 
  • Implement security measures such as firewalls and intrusion detection systems to detect and block any suspicious activities 

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.