CVE-2017-2185: Kddi Home Spot Cube 2 Firmware

High severity, CVSS 8.8. EPSS: 0.9% chance of exploitation in the next 30 days.

HOME SPOT CUBE2 firmware V101 and earlier allows authenticated attackers to execute arbitrary OS commands via WebUI.

Affected products

  • Kddi Home Spot Cube 2 Firmware: version v100 only; version v101 only

Published 2017-07-07. Last modified 2026-06-17.