CVE-2023-7003: Sciener Kontrol Lux

Medium severity, CVSS 6.8. EPSS: 0.3% chance of exploitation in the next 30 days.

The AES key utilized in the pairing process between a lock using Sciener firmware and a wireless keypad is not unique, and can be reused to compromise other locks using the Sciener firmware.

Affected products

  • Sciener Kontrol Lux: from 6.5, up to and including 6.5.07
  • Sciener Ttlock App: from 6.5.0, up to and including 6.5.07

Published 2024-03-15. Last modified 2026-06-17.