Sguda · Sguda U-Lock · CVE-2022-46307
**Name of the Vulnerable Software and Affected Versions**
SGUDA U-Lock central lock control service (affected versions not specified)
**Description**
The issue is related to incorrect authorization in the lock management function of the SGUDA U-Lock central lock control service. A remote attacker with general privilege can exploit this to call privileged APIs, allowing them to acquire information, manipulate, or disrupt the functionality of arbitrary electronic locks.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.