Description

AuntyFey Smart Combination Lock firmware versions as of 2025-12-24 contain a vulnerability that allows an unauthenticated attacker within Bluetooth Low Energy (BLE) range to cause a denial of service by repeatedly initiating BLE connections. Sustained connection attempts interrupt keypad authentication input and repeatedly force the device into lockout states, preventing legitimate users from unlocking the device.

INFO

Published Date :

2026-01-07T04:33:17.467Z

Last Modified :

2026-01-07T14:23:06.539Z

Source :

VulnCheck
AFFECTED PRODUCTS

The following products are affected by CVE-2025-15474 vulnerability.

Vendors Products
Auntyfey
  • Smart Combination Lock
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2025-15474.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Attack Requirements
Privileges Required
User Interaction
VS Confidentiality
VS Integrity
VS Availability
SS Confidentiality
SS Integrity
SS Availability