An issue was discovered on certain Nuki Home Solutions devices. There is a buffer overflow over the encrypted token parsing logic in the HTTP service that allows remote code execution. This affects Nuki Bridge v1 before 1.22.0 and v2 before 2.13.2.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-35574 | An issue was discovered on certain Nuki Home Solutions devices. There is a buffer overflow over the encrypted token parsing logic in the HTTP service that allows remote code execution. This affects Nuki Bridge v1 before 1.22.0 and v2 before 2.13.2. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Sun, 13 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Fri, 14 Feb 2025 08:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Nuki
Nuki nuki Smart Lock |
|
| CPEs | cpe:2.3:a:nuki:nuki_smart_lock:2.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Nuki
Nuki nuki Smart Lock |
|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-02-13T15:46:23.153Z
Reserved: 2022-06-06T00:00:00.000Z
Link: CVE-2022-32502
Updated: 2024-08-03T07:46:43.419Z
Status : Awaiting Analysis
Published: 2024-05-14T10:43:40.783
Modified: 2024-11-21T07:06:29.590
Link: CVE-2022-32502
No data.
OpenCVE Enrichment
No data.
EUVD