Vulnerabilities > Assaabloy > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-12-05 | CVE-2023-26941 | Inadequate Encryption Strength vulnerability in Assaabloy Yale Conexis L1 Firmware 1.1.0 Weak encryption mechanisms in RFID Tags in Yale Conexis L1 v1.1.0 allows attackers to create a cloned tag via physical proximity to the original. | 6.5 |
2023-12-05 | CVE-2023-26942 | Inadequate Encryption Strength vulnerability in Assaabloy Yale Ia-210 Firmware 1.0 Weak encryption mechanisms in RFID Tags in Yale IA-210 Alarm v1.0 allows attackers to create a cloned tag via physical proximity to the original. | 6.5 |
2023-12-05 | CVE-2023-26943 | Inadequate Encryption Strength vulnerability in Assaabloy Yale Keyless Smart Lock Firmware 1.0 Weak encryption mechanisms in RFID Tags in Yale Keyless Lock v1.0 allows attackers to create a cloned tag via physical proximity to the original. | 6.5 |
2023-08-17 | CVE-2023-4392 | Cleartext Storage of Sensitive Information vulnerability in Assaabloy Control ID Gerencia web 1.30 A vulnerability was found in Control iD Gerencia Web 1.30 and classified as problematic. | 5.3 |
2023-08-03 | CVE-2023-33368 | Exposure of Resource to Wrong Sphere vulnerability in Assaabloy Control ID Idsecure Some API routes exists in Control ID IDSecure 4.7.26.0 and prior, exfiltrating sensitive information and passwords to users accessing these API routes. | 6.5 |
2023-04-14 | CVE-2023-2044 | Cross-site Scripting vulnerability in Assaabloy Control ID Idsecure 4.7.29.1 A vulnerability has been found in Control iD iDSecure 4.7.29.1 and classified as problematic. | 6.1 |
2019-07-15 | CVE-2019-13604 | Use of a Broken or Risky Cryptographic Algorithm vulnerability in Assaabloy HID Digitalpersona 4500 Firmware 24 There is a short key vulnerability in HID Global DigitalPersona (formerly Crossmatch) U.are.U 4500 Fingerprint Reader v24. | 4.3 |