Tiiwee X1 Alarm System TWX1HAKV2 allows Authentication Bypass by Capture-replay, leading to physical Access to the protected facilities without triggering an alarm.
A capture-replay flaw exists when the design of the product makes it possible for a malicious user to sniff network traffic and bypass authentication by replaying it to the server in question to the same effect as the original message (or with minor changes).
Link | Tags |
---|---|
https://www.tiiwee.com/collections/x1-alarm-systems | product |
https://www.syss.de/fileadmin/dokumente/Publikationen/Advisories/SYSS-2025-006.txt | third party advisory |
http://seclists.org/fulldisclosure/2025/May/20 | mailing list |