CVE-2023-6323

ThroughTek Kalay SDK does not verify the authenticity of received messages, allowing an attacker to impersonate an authoritative server.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:wyze:cam_v3_firmware:4.36.11.5859:*:*:*:*:*:*:*
cpe:2.3:h:wyze:cam_v3:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:roku:indoor_camera_se_firmware:3.0.2.4679:*:*:*:*:*:*:*
cpe:2.3:h:roku:indoor_camera_se:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:owletcare:cam_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:owletcare:cam:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:owletcare:cam_2_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:owletcare:cam_2:-:*:*:*:*:*:*:*

Configuration 5 (hide)

cpe:2.3:a:throughtek:kalay_platform:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-05-15 13:15

Updated : 2025-02-11 21:32


NVD link : CVE-2023-6323

Mitre link : CVE-2023-6323

CVE.ORG link : CVE-2023-6323


JSON object : View

Products Affected

wyze

  • cam_v3
  • cam_v3_firmware

owletcare

  • cam_2
  • cam_2_firmware
  • cam_firmware
  • cam

throughtek

  • kalay_platform

roku

  • indoor_camera_se
  • indoor_camera_se_firmware
CWE
CWE-345

Insufficient Verification of Data Authenticity