CVE-2023-7003: Sciener Kontrol Lux
Medium severity, CVSS 6.8. EPSS: 0.3% chance of exploitation in the next 30 days.
The AES key utilized in the pairing process between a lock using Sciener firmware and a wireless keypad is not unique, and can be reused to compromise other locks using the Sciener firmware.
Affected products
- Sciener Kontrol Lux: from 6.5, up to and including 6.5.07
- Sciener Ttlock App: from 6.5.0, up to and including 6.5.07
Published 2024-03-15. Last modified 2026-06-17.