CVE-2023-33368: Assaabloy Control Id Idsecure
Medium severity, CVSS 6.5. EPSS: 0.5% chance of exploitation in the next 30 days.
Some API routes exists in Control ID IDSecure 4.7.26.0 and prior, exfiltrating sensitive information and passwords to users accessing these API routes.
Affected products
- Assaabloy Control Id Idsecure: up to and including 4.7.26.0
Published 2023-08-03. Last modified 2026-06-17.