CVE-2022-32509
EUVD-2022-3558114.05.2024, 10:43
An issue was discovered on certain Nuki Home Solutions devices. Lack of certificate validation on HTTP communications allows attackers to intercept and tamper data. This affects Nuki Smart Lock 3.0 before 3.3.5, Nuki Bridge v1 before 1.22.0 and Nuki Bridge v2 before 2.13.2.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| nuki | smart_lock_v3_pro | 𝑥 < 3.3.5 | ADP |
| nuki | bridge_v1 | 𝑥 < 1.22.0 | ADP |
| nuki | bridge_v2 | 𝑥 < 2.13.2 | ADP |
Common Weakness Enumeration
References