CVE-2018-15124: Zipato Zipabox Firmware

Critical severity, CVSS 9.8. EPSS: 1.1% chance of exploitation in the next 30 days.

Weak hashing algorithm in Zipato Zipabox Smart Home Controller BOARD REV - 1 with System Version -118 allows unauthenticated attacker extract clear text passwords and get root access on the device.

Affected products

  • Zipato Zipabox Firmware: version 118 only

Published 2018-08-13. Last modified 2026-06-17.