Vulnerabilities (CVE)

Filtered by vendor Sguda Subscribe
Filtered by product U-lock
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-46307 1 Sguda 2 U-lock, U-lock Firmware 2024-02-28 N/A 8.8 HIGH
SGUDA U-Lock central lock control service’s lock management function has incorrect authorization. A remote attacker with general privilege can exploit this vulnerability to call privileged APIs to acquire information, manipulate or disrupt the functionality of arbitrary electronic locks.
CVE-2022-46308 1 Sguda 2 U-lock, U-lock Firmware 2024-02-28 N/A 8.8 HIGH
SGUDA U-Lock central lock control service’s user management function has incorrect authorization. A remote attacker with general user privilege can exploit this vulnerability to call privileged APIs to access, modify and delete user information.