RSS   Vulnerabilities for 'Ttlock'   RSS

2019-09-10
 
CVE-2019-12943

CWE-640
 

 
TTLock devices do not properly restrict password-reset attempts, leading to incorrect access control and disclosure of sensitive information about valid account names.

 
 
CVE-2019-12942

CWE-269
 

 
TTLock devices do not properly block guest access in certain situations where the network connection to the cloud is unavailable.

 


Copyright 2024, cxsecurity.com

 

Back to Top