PoC Index

CVE-2023-50127

MEDIUM 5.9EPSS 0.4%

Hozard alarm system (Alarmsysteem) v1.0 is vulnerable to Improper Authentication. Commands sent via the SMS functionality are accepted from random phone numbers, which allows an attacker to bring the alarm system to a disarmed state from any given phone number.

CVSS v3.1
5.9 MEDIUMCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N
CVSS v3.1
5.9 MEDIUMCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N
EPSS
0.44% chance of exploitation in the next 30 days, 37th percentile
Published
2024-01-11
Updated
2025-06-20

Proof-of-concept exploits (1)

References

Related