PT-2025-50973 · Dormakaba · Saflok System 6000

A51199Deefa2C2520Cea24F746D899Ce

·

Published

2025-12-12

·

Updated

2025-12-13

·

CVE-2024-58311

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Dormakaba Saflok System 6000 (affected versions not specified)
Description The Dormakaba Saflok System 6000 uses a key generation algorithm that is predictable. This allows attackers to calculate card access keys from a 32-bit unique identifier. The deterministic key generation process can be exploited by calculating valid access keys through a mathematical transformation of the card's unique identifier, card id.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Weakness Enumeration

Related Identifiers

CVE-2024-58311

Affected Products

Saflok System 6000