CVE-2023-5881
HIGHGenie Aladdin Connect Garage Door Opener Firmware < 14.1.1 - Unauthenticated Critical Function Access via Web Interface
Title source: llmDescription
Unauthenticated access permitted to web interface page The Genie Company Aladdin Connect (Retrofit-Kit Model ALDCM) "Garage Door Control Module Setup" and modify the Garage door's SSID settings.
References (1)
Core 1
Core References
Scores
CVSS v3
8.2
EPSS
0.0060
EPSS Percentile
44.3%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N
CISA SSVC
Vulnrichment
Exploitation
poc
Automatable
no
Technical Impact
partial
Details
CWE
CWE-306
Status
published
Products (1)
geniecompany/aladdin_connect_garage_door_opener_firmware
< 14.1.1
Published
Jan 03, 2024
Tracked Since
Feb 18, 2026