Hozard alarm system (Alarmsysteem) v1.0 is vulnerable to Improper Authentication. Commands sent via the SMS functionality are accepted from random phone numbers, which allows an attacker to bring the alarm system to a disarmed state from any given phone number.
References
Link | Resource |
---|---|
https://www.secura.com/services/iot/consumer-products/security-concerns-in-popular-smart-home-devices | Exploit Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2024-01-11T00:00:00
Updated: 2024-01-11T20:22:49.508674
Reserved: 2023-12-04T00:00:00
Link: CVE-2023-50127
JSON object: View
NVD Information
Status : Analyzed
Published: 2024-01-11T21:15:10.770
Modified: 2024-01-18T20:21:22.963
Link: CVE-2023-50127
JSON object: View
Redhat Information
No data.
CWE