CVE-2023-1749
The listed versions of Nexx Smart Home devices lack proper access control when executing actions. An attacker with a valid NexxHome deviceId could send API requests that the affected devices would execute.
Date published : 2023-04-04
https://www.cisa.gov/news-events/ics-advisories/icsa-23-094-01
