漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
CVE-2023-7017
Vulnerability Description
Sciener locks' firmware update mechanism do not authenticate or validate firmware updates if passed to the lock through the Bluetooth Low Energy service. A challenge request can be sent to the lock with a command to prepare for an update, rather than an unlock request, allowing an attacker to compromise the device.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Sciener locks firmware 安全漏洞
Vulnerability Description
Sciener是赛脑智能(Sciener)公司的一个智能锁固件。 Sciener locks firmware存在安全漏洞,该漏洞源于如果通过Bluetooth Low Energy服务将固件更新传递给锁,则固件更新机制不会验证固件更新请求。
CVSS Information
N/A
Vulnerability Type
N/A