CVE-2008-7173

Severity CVSS v4.0:
Pending analysis
Type:
CWE-264 Permissions, Privileges, and Access Control
Publication date:
08/09/2009
Last modified:
09/04/2025

Description

The Jura Internet Connection Kit for the Jura Impressa F90 coffee maker does not properly restrict access to privileged functions, which allows remote attackers to cause a denial of service (physical damage), modify coffee settings, and possibly execute code via a crafted request. NOTE: this issue is being included in CVE because the denial of service may include financial loss or water damage.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:juracapecoffee:internet_connectivity_kit:*:*:*:*:*:*:*:*
cpe:2.3:h:juracapecoffee:jura_impressa:f90:*:*:*:*:*:*:*