İçeriğe atla
Noroxi

Sciener kayıtları

sciener üreticisine ait 6 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
0
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

6 kayıt
  • CVE-2023-7017
    39İzleyin

    Sciener locks' firmware update mechanism do not authenticate or validate firmware updates if passed to the lock through the Bluetooth Low En

    KritikCVSS 9,8İstismar yokEPSS %0

    sciener · kontrol lux15 Mar 2024

  • CVE-2023-7006
    36İzleyin

    The unlockKey character in a lock using Sciener firmware can be brute forced through repeated challenge requests, compromising the locks int

    KritikCVSS 9,1İstismar yokEPSS %1

    sciener · kontrol lux15 Mar 2024

  • CVE-2023-7009
    32İzleyin

    Some Sciener-based locks support plaintext message processing over Bluetooth Low Energy, allowing unencrypted malicious commands to be passe

    YüksekCVSS 8,2İstismar yokEPSS %0

    sciener · kontrol lux15 Mar 2024

  • CVE-2023-6960
    30İzleyin

    TTLock App virtual keys and settings are only deleted client side, and if preserved, can access the lock after intended deletion.

    YüksekCVSS 7,5İstismar yokEPSS %0

    sciener · ttlock app15 Mar 2024

  • CVE-2023-7003
    27İzleyin

    The AES key utilized in the pairing process between a lock using Sciener firmware and a wireless keypad is not unique, and can be reused to

    OrtaCVSS 6,8İstismar yokEPSS %0

    sciener · kontrol lux15 Mar 2024

  • CVE-2023-7004
    26İzleyin

    The TTLock App does not employ proper verification procedures to ensure that it is communicating with the expected device, allowing for conn

    OrtaCVSS 6,5İstismar yokEPSS %0

    sciener · ttlock app15 Mar 2024