Medium severity6.5NVD Advisory· Published Apr 4, 2023· Updated Jun 17, 2026
CVE-2023-1749
CVE-2023-1749
Description
The listed versions of Nexx Smart Home devices lack proper access control when executing actions. An attacker with a valid NexxHome deviceId could send API requests that the affected devices would execute.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6- cpe:2.3:o:getnexx:nxal-100_firmware:*:*:*:*:*:*:*:*Range: <=nxal100v-p1-9-1
- cpe:2.3:o:getnexx:nxg-100b_firmware:*:*:*:*:*:*:*:*Range: <=nxg100bv-p3-4-1
- cpe:2.3:o:getnexx:nxpg-100w_firmware:*:*:*:*:*:*:*:*Range: <=nxpg100cv4-0-0
- Range: 0
Patches
Vulnerability mechanics
References
1- www.cisa.gov/news-events/ics-advisories/icsa-23-094-01nvdThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.