Vulnerabilities > Assaabloy > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-12-05 CVE-2023-26941 Inadequate Encryption Strength vulnerability in Assaabloy Yale Conexis L1 Firmware 1.1.0
Weak encryption mechanisms in RFID Tags in Yale Conexis L1 v1.1.0 allows attackers to create a cloned tag via physical proximity to the original.
low complexity
assaabloy CWE-326
6.5
2023-12-05 CVE-2023-26942 Inadequate Encryption Strength vulnerability in Assaabloy Yale Ia-210 Firmware 1.0
Weak encryption mechanisms in RFID Tags in Yale IA-210 Alarm v1.0 allows attackers to create a cloned tag via physical proximity to the original.
low complexity
assaabloy CWE-326
6.5
2023-12-05 CVE-2023-26943 Inadequate Encryption Strength vulnerability in Assaabloy Yale Keyless Smart Lock Firmware 1.0
Weak encryption mechanisms in RFID Tags in Yale Keyless Lock v1.0 allows attackers to create a cloned tag via physical proximity to the original.
low complexity
assaabloy CWE-326
6.5
2023-08-17 CVE-2023-4392 Cleartext Storage of Sensitive Information vulnerability in Assaabloy Control ID Gerencia web 1.30
A vulnerability was found in Control iD Gerencia Web 1.30 and classified as problematic.
network
high complexity
assaabloy CWE-312
5.3
2023-08-03 CVE-2023-33368 Exposure of Resource to Wrong Sphere vulnerability in Assaabloy Control ID Idsecure
Some API routes exists in Control ID IDSecure 4.7.26.0 and prior, exfiltrating sensitive information and passwords to users accessing these API routes.
network
low complexity
assaabloy CWE-668
6.5
2023-04-14 CVE-2023-2044 Cross-site Scripting vulnerability in Assaabloy Control ID Idsecure 4.7.29.1
A vulnerability has been found in Control iD iDSecure 4.7.29.1 and classified as problematic.
network
low complexity
assaabloy CWE-79
6.1
2019-07-15 CVE-2019-13604 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Assaabloy HID Digitalpersona 4500 Firmware 24
There is a short key vulnerability in HID Global DigitalPersona (formerly Crossmatch) U.are.U 4500 Fingerprint Reader v24.
network
assaabloy CWE-327
4.3