Vulnerabilities > Owletcare

DATE CVE VULNERABILITY TITLE RISK
2024-05-15 CVE-2023-6321 Command Injection vulnerability in multiple products
A command injection vulnerability exists in the IOCTL that manages OTA updates.
network
low complexity
owletcare throughtek CWE-77
8.8
2024-05-15 CVE-2023-6323 ThroughTek Kalay SDK does not verify the authenticity of received messages, allowing an attacker to impersonate an authoritative server.
low complexity
wyze roku owletcare throughtek
6.5
2024-05-15 CVE-2023-6324 Use of Uninitialized Resource vulnerability in multiple products
ThroughTek Kalay SDK uses a predictable PSK value in the DTLS session when encountering an unexpected PSK identity
network
low complexity
wyze roku owletcare throughtek CWE-908
8.8