Known Vulnerabilities for Harmony Hub by Logitech
Listed below are 4 of the newest known vulnerabilities associated with "Harmony Hub" by "Logitech".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2025-56385 json | A SQL injection vulnerability exists in the login functionality of WellSky Harmony version 4.1.0.2.83 within the 'xmHarmony.a... | Not Provided | 2025-11-12 | 2026-07-05 |
| CVE-2020-15782 json | A vulnerability has been identified in SIMATIC Drive Controller family (All versions < V2.9.2), SIMATIC ET 200SP Open Control... | Not Provided | 2021-05-28 | 2026-06-02 |
| CVE-2018-15723 json | The Logitech Harmony Hub before version 4.15.206 is vulnerable to application level command injection via crafted HTTP reques... | 9.8 - CRITICAL | 2018-12-20 | 2019-10-09 |
| CVE-2018-15722 json | The Logitech Harmony Hub before version 4.15.206 is vulnerable to OS command injection via the time update request. A remote ... | 8.1 - HIGH | 2018-12-20 | 2019-10-09 |
| CVE-2018-15721 json | The XMPP server in Logitech Harmony Hub before version 4.15.206 is vulnerable to authentication bypass via a crafted XMPP req... | 9.8 - CRITICAL | 2018-12-20 | 2019-10-09 |
| CVE-2018-15720 json | Logitech Harmony Hub before version 4.15.206 contained two hard-coded accounts in the XMPP server that gave remote users acce... | 9.8 - CRITICAL | 2018-12-20 | 2019-10-09 |