Back to list
*Note: Email address will appear as "user domain ext" to prevent harvesting.
OpenElec: Remote Code Execution Vulnerability through Man-In-The-Middle(CVE-2017-6445)
Mar 06 2017 12:57PM
Wolfgang (lister feedyourhead at)
During my research about update mechanisms of open-source software I
discovered vulnerabilities in OpenElec.
== [ OVERVIEW ] ==
System affected: OpenElec
Vulnerable component: auto-update feature
Software-Version: 6.0.3, 7.0.1
User-Interaction: Reboot require...
[ more ]
Copyright 2010, SecurityFocus