Kontrol · Kontrol · CVE-2023-7006
**Name of the Vulnerable Software and Affected Versions**
Sciener firmware (affected versions not specified)
**Description**
The issue concerns the unlockKey character in locks using Sciener firmware, which can be compromised through brute force attacks by sending repeated challenge requests. This affects the integrity of the locks. The firmware is used in electronic locks, such as Kontrol and Elock locks, and works with the TTLock app.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.