Ttlock
Ttlock APP: vulnerabilidades y CVE
Ttlock APP tiene 3 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE3
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2023-7005 | Alta (7.5) | 0.26% | — | 19 dic 2024 | A specially crafted message can be sent to the TTLock App that downgrades the encryption protocol used for communication, and can be utilized to compromise the lock, such as through revealing the unlockKey field. |
| CVE-2023-7004 | Media (6.5) | 0.17% | — | 15 mar 2024 | The TTLock App does not employ proper verification procedures to ensure that it is communicating with the expected device, allowing for connection to a device that spoofs the MAC address of a lock, which compromises the… |
| CVE-2023-6960 | Alta (7.5) | 0.25% | — | 15 mar 2024 | TTLock App virtual keys and settings are only deleted client side, and if preserved, can access the lock after intended deletion. |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.