CVE-2023-1750

Publication date

2023-04-04 16:52:59

Family

icscert

State

PUBLISHED

Description

The listed versions of Nexx Smart Home devices lack proper access control when executing actions. An attacker with a valid NexxHome deviceId could retrieve device history, set device settings, and retrieve device information.