Vulnerabilities > Owletcare
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-05-15 | CVE-2023-6321 | Command Injection vulnerability in multiple products A command injection vulnerability exists in the IOCTL that manages OTA updates. | 8.8 |
2024-05-15 | CVE-2023-6323 | ThroughTek Kalay SDK does not verify the authenticity of received messages, allowing an attacker to impersonate an authoritative server. | 6.5 |
2024-05-15 | CVE-2023-6324 | Use of Uninitialized Resource vulnerability in multiple products ThroughTek Kalay SDK uses a predictable PSK value in the DTLS session when encountering an unexpected PSK identity | 8.8 |