Description
The Signify Philips Hue Bridge Pro firmware embeds a Mosquitto MQTT broker service that listens on all network interfaces without authentication. An unauthenticated attacker with network access to the MQTT service on a vulnerable system can read data and control connected lights. Fixed in 1.77.2071318010.
Published: 2026-08-13
Score: 6.9 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The Signify Philips Hue Bridge Pro firmware embeds a Mosquitto MQTT broker service that listens on all network interfaces without authentication. An unauthenticated attacker with network access to the MQTT service on a vulnerable system can read data and control connected lights, giving them direct unauthorized command over the lighting system. The vulnerability was fixed in firmware version 1.77.2071318010.

Affected Systems

The flaw exists in Signify Philips Hue Bridge Pro firmware that embeds a Mosquitto MQTT broker service. All units running vulnerable firmware without updates that disable or secure the broker are vulnerable. The vulnerability does not affect other Signify products listed.

Risk and Exploitability

CVSS 6.9 indicates moderate severity. The vulnerability is not listed in KEV and the EPSS score is < 1%, but it relies on local network access and the broker is exposed on all interfaces. Based on the description, the likely attack vector is an attacker with network access to the bridge’s MQTT port, allowing them to read data and control lights. Because the Bridge is commonly on home or office networks and the MQTT port is well known, the attack vector is realistic and the impact can be significant if an attacker gains local network access.

Generated by OpenCVE AI on August 22, 2026 at 09:34 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Update the Philips Hue Bridge Pro firmware to the latest release that secures or disables the embedded MQTT broker.
  • If the firmware cannot be updated immediately, block the broker port (default 1883) and any related ports on the bridge’s internal IP using router or local firewall rules to prevent external access.
  • Contact Signify support for instructions on disabling or securing the broker if the firmware update is not an immediate option.

Generated by OpenCVE AI on August 22, 2026 at 09:34 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 18 Aug 2026 21:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 18 Aug 2026 20:45:00 +0000

Type Values Removed Values Added
Description The Signify Philips Hue Bridge Pro firmware embeds a Mosquitto MQTT broker (v2.0.22) that listens on all network interfaces with anonymous access enabled and no firewall restriction. An attacker with access to the Bridge's network can read device data and control connected lights. The Signify Philips Hue Bridge Pro firmware embeds a Mosquitto MQTT broker service that listens on all network interfaces without authentication. An unauthenticated attacker with network access to the MQTT service on a vulnerable system can read data and control connected lights. Fixed in 1.77.2071318010.
Title Philips Hue Bridge Pro MQTT broker missing authentication Signify Philips Hue Bridge Pro MQTT broker missing authentication
Metrics cvssV3_1

{'score': 6.3, 'vector': 'CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L'}

cvssV4_0

{'score': 5.3, 'vector': 'CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N'}

cvssV3_1

{'score': 7.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L'}

cvssV4_0

{'score': 6.9, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N'}


Fri, 14 Aug 2026 10:00:00 +0000

Type Values Removed Values Added
First Time appeared Signify
Signify philips Hue Bridge Pro
Vendors & Products Signify
Signify philips Hue Bridge Pro

Thu, 13 Aug 2026 19:30:00 +0000

Type Values Removed Values Added
Description The Signify Philips Hue Bridge Pro firmware embeds a Mosquitto MQTT broker (v2.0.22) that listens on all network interfaces with anonymous access enabled and no firewall restriction. An attacker with access to the Bridge's network can read device data and control connected lights.
Title Philips Hue Bridge Pro MQTT broker missing authentication
Weaknesses CWE-306
References
Metrics cvssV3_1

{'score': 6.3, 'vector': 'CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L'}

cvssV4_0

{'score': 5.3, 'vector': 'CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N'}


Subscriptions

Signify Philips Hue Bridge Pro
cve-icon MITRE

Status: PUBLISHED

Assigner: cisa-cg

Published:

Updated: 2026-08-18T20:28:10.412Z

Reserved: 2026-08-13T14:20:28.541Z

Link: CVE-2026-73669

cve-icon Vulnrichment

Updated: 2026-08-17T18:10:43.016Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-08-13T20:17:30.440

Modified: 2026-08-26T16:52:20.850

Link: CVE-2026-73669

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-22T09:45:04Z

Weaknesses
  • CWE-306

    Missing Authentication for Critical Function