Due to the use of an insecure algorithm for rolling codes in MCK Smartlock 1.0, allows attackers to unlock the mechanism via replay attacks.
References
Link | Resource |
---|---|
https://tiger-team-1337.blogspot.com/2022/05/rf-remote-mck-lock-predictable-rolling.html | Exploit Third Party Advisory |
https://www.youtube.com/watch?v=EruaGuE-cWI | Exploit Third Party Advisory |
https://twitter.com/Kevin2600/status/1495007534419038213 | Exploit Third Party Advisory |
Configurations
Information
Published : 2022-05-18 11:15
Updated : 2022-05-26 09:24
NVD link : CVE-2022-30111
Mitre link : CVE-2022-30111
JSON object : View
CWE
CWE-327
Use of a Broken or Risky Cryptographic Algorithm
Products Affected
mck_smartlock_project
- mck_smartlock