CNNVD-202601-4386 Information

CNNVD ID

CNNVD-202601-4386

CVE-2025-59107

  • CNNVD Published: 2026-01-26

Description (Chinese)

Dormakaba Access Manager是美国Dormakaba公司的一个智能硬件控制器。 Dormakaba Access Manager存在安全漏洞,该漏洞源于固件更新ZIP文件使用静态可提取密码,可能导致固件解密。

Description (English)

Dormakaba Access Manager is a smart hardware controller for Dormakaba in the United States. There is a security loophole in Dormakaba Access Manager, which stems from the use of static extract codes for the ZIP file for solid updates, which may lead to the decryption of the solid.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Dormakaba

Published

2026-01-26

Last Modified

2026-02-24

References

https://r.sec-consult.com/dormakaba https://r.sec-consult.com/dkaccess https://www.dormakabagroup.com/en/security-advisories https://access.redhat.com/security/cve/cve-2025-59107

Patch

https://www.dormakabagroup.com/en/security-advisories

Share on: