Lucene search

K
cveMitreCVE-2023-50129
HistoryJan 11, 2024 - 9:15 p.m.

CVE-2023-50129

2024-01-1121:15:10
CWE-311
mitre
web.nvd.nist.gov
16
encryption
nfc
tags
flient
smart door lock
cloning
unauthorized access

CVSS3

6.5

Attack Vector

ADJACENT

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

AI Score

6.2

Confidence

High

EPSS

0

Percentile

15.5%

Missing encryption in the NFC tags of the Flient Smart Door Lock v1.0 allows attackers to create a cloned tag via brief physical proximity to the original tags, which results in an attacker gaining access to the perimeter.

Affected configurations

Nvd
Node
flientsmart_lock_advanced_firmwareMatch1.0
AND
flientsmart_lock_advancedMatch-
VendorProductVersionCPE
flientsmart_lock_advanced_firmware1.0cpe:2.3:o:flient:smart_lock_advanced_firmware:1.0:*:*:*:*:*:*:*
flientsmart_lock_advanced-cpe:2.3:h:flient:smart_lock_advanced:-:*:*:*:*:*:*:*

CVSS3

6.5

Attack Vector

ADJACENT

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

AI Score

6.2

Confidence

High

EPSS

0

Percentile

15.5%

Related for CVE-2023-50129