An issue was discovered on certain Nuki Home Solutions devices. Lack of certificate validation on HTTP communications allows attackers to intercept and tamper data. This affects Nuki Smart Lock 3.0 before 3.3.5, Nuki Bridge v1 before 1.22.0 and Nuki Bridge v2 before 2.13.2.
Metrics
Affected Vendors & Products
References
History
Wed, 14 Aug 2024 20:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-295 | |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: mitre
Published: 2024-05-09T19:30:06.236Z
Updated: 2025-02-13T15:46:28.006Z
Reserved: 2022-06-06T00:00:00.000Z
Link: CVE-2022-32509

Updated: 2024-08-03T07:46:43.316Z

Status : Awaiting Analysis
Published: 2024-05-14T10:43:42.160
Modified: 2024-11-21T07:06:31.157
Link: CVE-2022-32509

No data.