Back

CVE-2018-7300

CRITICAL

Directory Traversal / Arbitrary File Write / Remote Code Execution in the User.setLanguage method in eQ-3 AG Homematic CCU2 2.29.2 and earlier allows remote attackers to write arbitrary files to the device's filesystem. This vulnerability can be exploited by unauthenticated attackers with access to the web interface.

Published: Feb 22, 2018 Modified: Jun 17, 2026
CWE-22

CVSS Metrics

CVSSv3
Attack Vector: NETWORK Attack Complexity: LOW Privileges Required: NONE User Interaction: NONE Scope: UNCHANGED Confidentiality Impact: HIGH Integrity Impact: HIGH Availability Impact: HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Affected Products (1)

Vendor Product Version
eq-3 homematic_ccu2_firmware *

GitHub Security Advisory GHSA-64v8-x795-vgp3

Directory Traversal / Arbitrary File Write / Remote Code Execution in the User.setLanguage method...

Risk Scores

CVSS Score 9.8 / 10
EPSS Score 30.59%

Top 2% most likely to be exploited

Threat Score 48.4 / 100

Data Sources

NVD EPSS GitHub