Description
The listed versions of Nexx Smart Home devices lack proper access control when executing actions. An attacker with a valid NexxHome deviceId could send API requests that the affected devices would execute.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-23970 | The listed versions of Nexx Smart Home devices lack proper access control when executing actions. An attacker with a valid NexxHome deviceId could send API requests that the affected devices would execute. |
References
History
Thu, 16 Jan 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2025-01-16T21:36:36.545Z
Reserved: 2023-03-30T20:02:11.282Z
Link: CVE-2023-1749
Updated: 2024-08-02T05:57:25.237Z
Status : Modified
Published: 2023-04-04T17:15:07.117
Modified: 2024-11-21T07:39:49.490
Link: CVE-2023-1749
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD