← Back

CVE-2017-16241

nvd nist
Published: Dec 10, 2017Modified: May 13, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

Incorrect access control in AMAG Symmetry Door Edge Network Controllers (EN-1DBC Boot App 23611 03.60 and STD App 23603 03.60; EN-2DBC Boot App 24451 01.00 and STD App 2461 01.00) enables remote attackers to execute door controller commands (e.g., lock, unlock, add ID card value) by sending unauthenticated requests to the affected devices via Serial over TCP/IP, as demonstrated by a Ud command.

Affected (4)

3 products
En 1dbc Firmware
Std Firmware
En 2dbc Firmware
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 03.60
Running on/withPlatform Versions
Amag
En 1dbc
All versions
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 03.60
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 03.60
Running on/withPlatform Versions
Amag
En 2dbc
All versions
Configuration D
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 01.00
Running on/withPlatform Versions
Amag
Std
All versions

References (6)

Source: cve@mitre.org
Exploit
Source: cve@mitre.org
Not Applicable
Source: cve@mitre.org
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
Source: af854a3a-2127-422b-91ae-364da2661108
Not Applicable
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory

Timeline

No history available yet.