Metrics
Affected Vendors & Products
Wed, 07 Jan 2026 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Kseniasecurity
Kseniasecurity lares Kseniasecurity lares Firmware |
|
| CPEs | cpe:2.3:h:kseniasecurity:lares:4.0:*:*:*:*:*:*:* cpe:2.3:o:kseniasecurity:lares_firmware:1.6:*:*:*:*:*:*:* |
|
| Vendors & Products |
Kseniasecurity
Kseniasecurity lares Kseniasecurity lares Firmware |
Mon, 05 Jan 2026 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ksenia Security
Ksenia Security lares 4.0 Home Automation |
|
| Vendors & Products |
Ksenia Security
Ksenia Security lares 4.0 Home Automation |
Fri, 02 Jan 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 30 Dec 2025 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Ksenia Security Lares 4.0 version 1.6 contains a URL redirection vulnerability in the 'cmdOk.xml' script that allows attackers to manipulate the 'redirectPage' GET parameter. Attackers can craft malicious links that redirect authenticated users to arbitrary websites when clicking on a specially constructed link hosted on a trusted domain. | |
| Title | Ksenia Security Lares 4.0 Home Automation 1.6 URL Redirection Vulnerability | |
| Weaknesses | CWE-601 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-01-02T14:38:40.693Z
Reserved: 2025-12-27T01:46:41.722Z
Link: CVE-2025-15112
Updated: 2026-01-02T14:24:02.522Z
Status : Analyzed
Published: 2025-12-30T23:15:49.733
Modified: 2026-01-07T22:00:45.707
Link: CVE-2025-15112
No data.