CVE ID | |
CVSS SCORE | 8.3, AV:A/AC:L/Au:N/C:C/I:C/A:C |
AFFECTED VENDORS |
Juuko |
AFFECTED PRODUCTS |
JK-800 |
VULNERABILITY DETAILS |
The specific flaw exists with the communication between the transmitter and receiver pair. By using a fixed control code, an attacker can obtain and replay commands to the receiver. An attacker can leverage this vulnerability to issue commands to the physical equipment controlled by the device. |
ADDITIONAL DETAILS |
05/09/18 - ZDI reported the issue to ICS-CERT -- Mitigation: |
DISCLOSURE TIMELINE |
|
CREDIT | Stephen Hilt Marco Balduzzi Akira Urano Philippe Z Lin Federico Maggi Jonathan Andersson Rainer Vosseler |