Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f2v5-p4rx-6wc2

Опубликовано: 15 мар. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 6.8

Описание

The AES key utilized in the pairing process between a lock using Sciener firmware and a wireless keypad is not unique, and can be reused to compromise other locks using the Sciener firmware.

The AES key utilized in the pairing process between a lock using Sciener firmware and a wireless keypad is not unique, and can be reused to compromise other locks using the Sciener firmware.

EPSS

Процентиль: 16%
0.00051
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-323

Связанные уязвимости

CVSS3: 6.8
nvd
почти 2 года назад

The AES key utilized in the pairing process between a lock using Sciener firmware and a wireless keypad is not unique, and can be reused to compromise other locks using the Sciener firmware.

EPSS

Процентиль: 16%
0.00051
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-323