Description

An issue was discovered on certain Nuki Home Solutions devices. There is a buffer overflow over the encrypted token parsing logic in the HTTP service that allows remote code execution. This affects Nuki Bridge v1 before 1.22.0 and v2 before 2.13.2.

INFO

Published Date :

2024-05-09T19:37:08.770Z

Last Modified :

2025-02-13T15:46:23.153Z

Source :

mitre
AFFECTED PRODUCTS

The following products are affected by CVE-2022-32502 vulnerability.

Vendors Products
Nuki
  • Nuki Smart Lock

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact