CVE-2023-50127

Severity CVSS v4.0:
Pending analysis
Type:
CWE-287 Authentication Issues
Publication date:
11/01/2024
Last modified:
20/06/2025

Description

Hozard alarm system (Alarmsysteem) v1.0 is vulnerable to Improper Authentication. Commands sent via the SMS functionality are accepted from random phone numbers, which allows an attacker to bring the alarm system to a disarmed state from any given phone number.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:hozard:alarm_system:1.0:*:*:*:*:*:*:*