{ "id": "CVE-2023-7007", "sourceIdentifier": "cret@cert.org", "published": "2024-03-15T17:15:07.763", "lastModified": "2024-03-15T17:15:07.763", "vulnStatus": "Received", "descriptions": [ { "lang": "en", "value": "Sciener server does not validate connection requests from the GatewayG2, allowing an impersonation attack that provides the attacker the unlockKey field." } ], "metrics": {}, "references": [ { "url": "https://alephsecurity.com/2024/03/07/kontrol-lux-lock-2/", "source": "cret@cert.org" } ] }