Metrics
Affected Vendors & Products
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Wed, 07 Jan 2026 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Kseniasecurity
Kseniasecurity lares Kseniasecurity lares Firmware |
|
| CPEs | cpe:2.3:h:kseniasecurity:lares:4.0:*:*:*:*:*:*:* cpe:2.3:o:kseniasecurity:lares_firmware:1.6:*:*:*:*:*:*:* |
|
| Vendors & Products |
Kseniasecurity
Kseniasecurity lares Kseniasecurity lares Firmware |
Mon, 05 Jan 2026 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ksenia Security
Ksenia Security lares 4.0 Home Automation |
|
| Vendors & Products |
Ksenia Security
Ksenia Security lares 4.0 Home Automation |
Fri, 02 Jan 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 30 Dec 2025 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Ksenia Security Lares 4.0 version 1.6 contains a URL redirection vulnerability in the 'cmdOk.xml' script that allows attackers to manipulate the 'redirectPage' GET parameter. Attackers can craft malicious links that redirect authenticated users to arbitrary websites when clicking on a specially constructed link hosted on a trusted domain. | |
| Title | Ksenia Security Lares 4.0 Home Automation 1.6 URL Redirection Vulnerability | |
| Weaknesses | CWE-601 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-01-02T14:38:40.693Z
Reserved: 2025-12-27T01:46:41.722Z
Link: CVE-2025-15112
Updated: 2026-01-02T14:24:02.522Z
Status : Analyzed
Published: 2025-12-30T23:15:49.733
Modified: 2026-01-07T22:00:45.707
Link: CVE-2025-15112
No data.
OpenCVE Enrichment
Updated: 2026-01-05T10:19:43Z