VYPR

alarm system

by Hozard

CVEs (4)

  • CVE-2023-50123HigJan 11, 2024
    risk 0.53cvss 8.1epss 0.01

    The number of attempts to bring the Hozard Alarm system (alarmsystemen) v1.0 to a disarmed state is not limited. This could allow an attacker to perform a brute force on the SMS authentication, to bring the alarm system to a disarmed state.

  • CVE-2023-50126MedJan 11, 2024
    risk 0.42cvss 6.5epss 0.00

    Missing encryption in the RFID tags of the Hozard alarm system (Alarmsysteem) v1.0 allow attackers to create a cloned tag via brief physical proximity to one of the original tags, which results in an attacker being able to bring the alarm system to a disarmed state.

  • CVE-2023-50125MedJan 11, 2024
    risk 0.38cvss 5.9epss 0.00

    A default engineer password set on the Hozard alarm system (Alarmsysteem) v1.0 allows an attacker to bring the alarm system to a disarmed state.

  • CVE-2023-50128MedJan 11, 2024
    risk 0.34cvss 5.3epss 0.00

    The remote keyless system of the Hozard alarm system (alarmsystemen) v1.0 sends an identical radio frequency signal for each request, which results in an attacker being able to conduct replay attacks to bring the alarm system to a disarmed state.