CVE-2017-2186: Kddi Home Spot Cube 2 Firmware

High severity, CVSS 8.8. EPSS: 1% chance of exploitation in the next 30 days.

HOME SPOT CUBE2 firmware V101 and earlier allows an attacker to bypass authentication to load malicious firmware via WebUI.

Affected products

  • Kddi Home Spot Cube 2 Firmware: version v100 only; version v101 only

Published 2017-07-07. Last modified 2026-06-17.