Vulnerability Description
Glue Smart Lock 2.7.8 devices do not properly block guest access in certain situations where the network connection is unavailable.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Gluehome | Glue Smart Lock Firmware | 2.7.8 |
| Gluehome | Glue Smart Lock | - |
Related Weaknesses (CWE)
References
- https://www.kth.se/polopoly_fs/1.914054.1561620889%21/Examensarbete%20Final.pdf
- https://www.kth.se/polopoly_fs/1.931930.1571073241%21/Vulnerability_Report_Glue_
- https://www.kth.se/polopoly_fs/1.914054.1561620889%21/Examensarbete%20Final.pdf
- https://www.kth.se/polopoly_fs/1.931930.1571073241%21/Vulnerability_Report_Glue_
FAQ
What is CVE-2019-12944?
CVE-2019-12944 is a vulnerability with a CVSS score of 7.5 (HIGH). Glue Smart Lock 2.7.8 devices do not properly block guest access in certain situations where the network connection is unavailable.
How severe is CVE-2019-12944?
CVE-2019-12944 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-12944?
Check the references section above for vendor advisories and patch information. Affected products include: Gluehome Glue Smart Lock Firmware, Gluehome Glue Smart Lock.