Vulnerabilities > Oklok Project > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-05-04 CVE-2020-8792 Use of Insufficiently Random Values vulnerability in Oklok Project Oklok 3.1.1
The OKLOK (3.1.1) mobile companion app for Fingerprint Bluetooth Padlock FB50 (2.3) has an information-exposure issue.
network
low complexity
oklok-project CWE-330
5.3
2020-05-04 CVE-2020-8791 Authorization Bypass Through User-Controlled Key vulnerability in Oklok Project Oklok 3.1.1
The OKLOK (3.1.1) mobile companion app for Fingerprint Bluetooth Padlock FB50 (2.3) allows remote attackers to submit API requests using authenticated but unauthorized tokens, resulting in IDOR issues.
network
low complexity
oklok-project CWE-639
6.5