CVE-2022-30111

MEDIUM

MCK Smartlock 1.0 - Predictable Rolling Code via Insecure Algorithm

Title source: llm
STIX 2.1

Description

Due to the use of an insecure algorithm for rolling codes in MCK Smartlock 1.0, allows attackers to unlock the mechanism via replay attacks.

References (3)

Core 3
Core References
Exploit, Third Party Advisory x_refsource_misc
https://www.youtube.com/watch?v=EruaGuE-cWI
Exploit, Third Party Advisory x_refsource_misc
https://twitter.com/Kevin2600/status/1495007534419038213

Scores

CVSS v3 6.8
EPSS 0.0031
EPSS Percentile 22.8%
Attack Vector PHYSICAL
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-327
Status published
Products (1)
mck_smartlock_project/mck_smartlock 1.0
Published May 18, 2022
Tracked Since Feb 18, 2026