Vulnerabilities > Ttlock

DATE CVE VULNERABILITY TITLE RISK
2019-09-10 CVE-2019-12943 Weak Password Recovery Mechanism for Forgotten Password vulnerability in Ttlock
TTLock devices do not properly restrict password-reset attempts, leading to incorrect access control and disclosure of sensitive information about valid account names.
network
high complexity
ttlock CWE-640
8.1
2019-09-10 CVE-2019-12942 Missing Authorization vulnerability in Ttlock
TTLock devices do not properly block guest access in certain situations where the network connection to the cloud is unavailable.
low complexity
ttlock CWE-862
6.5