{"api_version":"1","generated_at":"2026-07-23T07:41:09+00:00","cve":"CVE-2017-16241","urls":{"html":"https://cve.report/CVE-2017-16241","api":"https://cve.report/api/cve/CVE-2017-16241.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2017-16241","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2017-16241"},"summary":{"title":"CVE-2017-16241","description":"Incorrect access control in AMAG Symmetry Door Edge Network Controllers (EN-1DBC Boot App 23611 03.60 and STD App 23603 03.60; EN-2DBC Boot App 24451 01.00 and STD App 2461 01.00) enables remote attackers to execute door controller commands (e.g., lock, unlock, add ID card value) by sending unauthenticated requests to the affected devices via Serial over TCP/IP, as demonstrated by a Ud command.","state":"PUBLISHED","assigner":"mitre","published_at":"2017-12-10 01:29:00","updated_at":"2025-04-20 01:37:25"},"problem_types":["CWE-306","n/a"],"metrics":[{"version":"3.0","source":"nvd@nist.gov","type":"Primary","score":"7.5","severity":"HIGH","vector":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","data":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","baseScore":7.5,"baseSeverity":"HIGH","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"HIGH","availabilityImpact":"NONE"}},{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"5","severity":"","vector":"AV:N/AC:L/Au:N/C:N/I:P/A:N","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"}}],"references":[{"url":"https://github.com/lixmk/Concierge","name":"https://github.com/lixmk/Concierge","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"],"title":"GitHub - lixmk/Concierge: Concierge Toolkit: Physical Access Control Identification and Exploitation","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.secureworks.com/research/advisory-2017-001","name":"https://www.secureworks.com/research/advisory-2017-001","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Incorrect Access Control in AMAG Technologies Symmetry Edge Network Door Controllers | Secureworks","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://hushcon.com/schedule.html","name":"https://hushcon.com/schedule.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Not Applicable"],"title":"HushCon 2017","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2017-16241","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2017-16241","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2017","cve_id":"16241","vulnerable":"0","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"h","cpe4":"amag","cpe5":"en-1dbc","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2017","cve_id":"16241","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"amag","cpe5":"en-1dbc_firmware","cpe6":"03.60","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2017","cve_id":"16241","vulnerable":"0","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"h","cpe4":"amag","cpe5":"en-2dbc","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2017","cve_id":"16241","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"amag","cpe5":"en-2dbc_firmware","cpe6":"03.60","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2017","cve_id":"16241","vulnerable":"0","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"h","cpe4":"amag","cpe5":"std","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2017","cve_id":"16241","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"amag","cpe5":"std_firmware","cpe6":"01.00","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2017","cve_id":"16241","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"amag","cpe5":"std_firmware","cpe6":"03.60","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-05T20:20:04.843Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"tags":["x_refsource_MISC","x_transferred"],"url":"https://hushcon.com/schedule.html"},{"tags":["x_refsource_MISC","x_transferred"],"url":"https://www.secureworks.com/research/advisory-2017-001"},{"tags":["x_refsource_MISC","x_transferred"],"url":"https://github.com/lixmk/Concierge"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2017-12-09T00:00:00.000Z","descriptions":[{"lang":"en","value":"Incorrect access control in AMAG Symmetry Door Edge Network Controllers (EN-1DBC Boot App 23611 03.60 and STD App 23603 03.60; EN-2DBC Boot App 24451 01.00 and STD App 2461 01.00) enables remote attackers to execute door controller commands (e.g., lock, unlock, add ID card value) by sending unauthenticated requests to the affected devices via Serial over TCP/IP, as demonstrated by a Ud command."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-12-10T00:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"tags":["x_refsource_MISC"],"url":"https://hushcon.com/schedule.html"},{"tags":["x_refsource_MISC"],"url":"https://www.secureworks.com/research/advisory-2017-001"},{"tags":["x_refsource_MISC"],"url":"https://github.com/lixmk/Concierge"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2017-16241","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Incorrect access control in AMAG Symmetry Door Edge Network Controllers (EN-1DBC Boot App 23611 03.60 and STD App 23603 03.60; EN-2DBC Boot App 24451 01.00 and STD App 2461 01.00) enables remote attackers to execute door controller commands (e.g., lock, unlock, add ID card value) by sending unauthenticated requests to the affected devices via Serial over TCP/IP, as demonstrated by a Ud command."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"https://hushcon.com/schedule.html","refsource":"MISC","url":"https://hushcon.com/schedule.html"},{"name":"https://www.secureworks.com/research/advisory-2017-001","refsource":"MISC","url":"https://www.secureworks.com/research/advisory-2017-001"},{"name":"https://github.com/lixmk/Concierge","refsource":"MISC","url":"https://github.com/lixmk/Concierge"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2017-16241","datePublished":"2017-12-10T01:00:00.000Z","dateReserved":"2017-10-31T00:00:00.000Z","dateUpdated":"2024-08-05T20:20:04.843Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2017-12-10 01:29:00","lastModifiedDate":"2025-04-20 01:37:25","problem_types":["CWE-306","n/a"],"metrics":{"cvssMetricV30":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","baseScore":7.5,"baseSeverity":"HIGH","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"HIGH","availabilityImpact":"NONE"},"exploitabilityScore":3.9,"impactScore":3.6}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:amag:en-1dbc_firmware:03.60:*:*:*:*:*:*:*","matchCriteriaId":"46B31B9E-2F5F-4906-B9BD-944AA8C7326C"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:amag:en-1dbc:-:*:*:*:*:*:*:*","matchCriteriaId":"549C9CA6-CB0A-476C-B8FF-5FA011DDB3CA"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:amag:std_firmware:03.60:*:*:*:*:*:*:*","matchCriteriaId":"CEDC2299-8EDC-4DDB-9CB3-6B0C0695B834"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:amag:std:-:*:*:*:*:*:*:*","matchCriteriaId":"38ACC405-3471-408A-ADAB-86AF96664FAD"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:amag:en-2dbc_firmware:03.60:*:*:*:*:*:*:*","matchCriteriaId":"0BDAF16C-D1E0-4EDA-A7B4-F8D79C17B640"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:amag:en-2dbc:-:*:*:*:*:*:*:*","matchCriteriaId":"80A5D338-FFFC-41BF-9DD6-D41BB3A451CA"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:amag:std_firmware:01.00:*:*:*:*:*:*:*","matchCriteriaId":"C4353787-C479-406C-B645-2124922DA7EC"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:amag:std:-:*:*:*:*:*:*:*","matchCriteriaId":"38ACC405-3471-408A-ADAB-86AF96664FAD"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2017","CveId":"16241","Ordinal":"1","Title":"CVE-2017-16241","CVE":"CVE-2017-16241","Year":"2017"},"notes":[{"CveYear":"2017","CveId":"16241","Ordinal":"1","NoteData":"Incorrect access control in AMAG Symmetry Door Edge Network Controllers (EN-1DBC Boot App 23611 03.60 and STD App 23603 03.60; EN-2DBC Boot App 24451 01.00 and STD App 2461 01.00) enables remote attackers to execute door controller commands (e.g., lock, unlock, add ID card value) by sending unauthenticated requests to the affected devices via Serial over TCP/IP, as demonstrated by a Ud command.","Type":"Description","Title":"CVE-2017-16241"},{"CveYear":"2017","CveId":"16241","Ordinal":"2","NoteData":"2017-12-09","Type":"Other","Title":"Published"},{"CveYear":"2017","CveId":"16241","Ordinal":"3","NoteData":"2017-12-09","Type":"Other","Title":"Modified"}]}}}