CNNVD-202601-4391 Information

CNNVD ID

CNNVD-202601-4391

CVE-2025-59102

  • CNNVD Published: 2026-01-26

Description (Chinese)

Dormakaba Access Manager是美国Dormakaba公司的一个智能硬件控制器。 Dormakaba Access Manager存在安全漏洞,该漏洞源于备份功能可下载包含未加密PIN等敏感数据的本地数据库,可能导致敏感数据泄露。

Description (English)

Dormakaba Access Manager is a smart hardware controller for Dormakaba in the United States. There is a security loophole in Dormakaba Access Manager, which stems from the fact that backup functions can download local databases containing sensitive data such as unencrypted PIN, which can lead to the leakage of sensitive data.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Dormakaba

Published

2026-01-26

Last Modified

2026-02-24

References

https://r.sec-consult.com/dormakaba https://r.sec-consult.com/dkaccess https://www.dormakabagroup.com/en/security-advisories https://access.redhat.com/security/cve/cve-2025-59102

Patch

https://www.dormakabagroup.com/en/security-advisories

Share on: