Search Results (2 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2026-73669 1 Signify 1 Philips Hue Bridge Pro 2026-08-18 7.3 High
The Signify Philips Hue Bridge Pro firmware embeds a Mosquitto MQTT broker service that listens on all network interfaces without authentication. An unauthenticated attacker with network access to the MQTT service on a vulnerable system can read data and control connected lights. Fixed in 1.77.2071318010.
CVE-2025-56562 1 Signify 1 Wiz Connected 2025-10-02 7.5 High
An incorrect API discovered in Signify Wiz Connected 1.9.1 allows attackers to remotely launch a DoS on Wiz devices only requiring the MAC address.