Description
The listed versions of Nexx Smart Home devices lack proper access control when executing actions. An attacker with a valid NexxHome deviceId could retrieve device history, set device settings, and retrieve device information.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-23971 | The listed versions of Nexx Smart Home devices lack proper access control when executing actions. An attacker with a valid NexxHome deviceId could retrieve device history, set device settings, and retrieve device information. |
References
History
Thu, 16 Jan 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2025-01-16T21:36:53.482Z
Reserved: 2023-03-30T20:02:38.794Z
Link: CVE-2023-1750
Updated: 2024-08-02T05:57:25.263Z
Status : Modified
Published: 2023-04-04T17:15:07.173
Modified: 2024-11-21T07:39:49.610
Link: CVE-2023-1750
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD