CVE-2020-8790: Oklok Project Oklok
Critical severity, CVSS 9.8. EPSS: 1.7% chance of exploitation in the next 30 days.
The OKLOK (3.1.1) mobile companion app for Fingerprint Bluetooth Padlock FB50 (2.3) has weak password requirements combined with improper restriction of excessive authentication attempts, which could allow a remote attacker to discover user credentials and obtain access via a brute force attack.
Affected products
- Oklok Project Oklok: version 3.1.1 only
Published 2020-05-04. Last modified 2026-06-17.