Описание
Tinxy Door Lock with firmware before 3.2 allow attackers to unlock a door by replaying an Unlock request that occurred when the attacker was previously authorized. In other words, door-access revocation is mishandled.
Уязвимые конфигурации
Конфигурация 1Версия до 3.2 (исключая)
Одновременно
cpe:2.3:o:tinxy:smart_wifi_door_lock_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:tinxy:smart_wifi_door_lock:-:*:*:*:*:*:*:*
EPSS
Процентиль: 42%
0.00198
Низкий
5.9 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
CWE-294
Связанные уязвимости
CVSS3: 5.9
github
больше 3 лет назад
Tinxy Door Lock with firmware before 3.2 allow attackers to unlock a door by replaying an Unlock request that occurred when the attacker was previously authorized. In other words, door-access revocation is mishandled.
EPSS
Процентиль: 42%
0.00198
Низкий
5.9 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
CWE-294