| CVE ID | |
| CVSS SCORE | 8.3, AV:A/AC:L/Au:N/C:C/I:C/A:C |
| AFFECTED VENDORS |
Juuko |
| AFFECTED PRODUCTS |
JK-800 |
| VULNERABILITY DETAILS |
The specific flaw exists with the communication between the transmitter and receiver pair. By using a fixed control code, an attacker can obtain and replay commands to the receiver. An attacker can leverage this vulnerability to issue commands to the physical equipment controlled by the device. |
| ADDITIONAL DETAILS |
05/09/18 - ZDI reported the issue to ICS-CERT -- Mitigation: |
| DISCLOSURE TIMELINE |
|
| CREDIT | Stephen Hilt Marco Balduzzi Akira Urano Philippe Z Lin Federico Maggi Jonathan Andersson Rainer Vosseler |