High severity7.5NVD Advisory· Published Apr 4, 2023· Updated Jun 17, 2026
CVE-2023-1751
CVE-2023-1751
Description
The listed versions of Nexx Smart Home devices use a WebSocket server that does not validate if the bearer token in the Authorization header belongs to the device attempting to associate. This could allow any authorized user to receive alarm information and signals meant for other devices which leak a deviceId.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Range: 0
Patches
Vulnerability mechanics
References
1- www.cisa.gov/news-events/ics-advisories/icsa-23-094-01nvdThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.