Vulnerabilities (CVE)

Filtered by vendor Lazy Mouse Project Subscribe
Filtered by product Lazy Mouse
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-45483 1 Lazy Mouse Project 1 Lazy Mouse 2023-12-10 N/A 5.9 MEDIUM
Lazy Mouse allows an attacker (in a man in the middle position between the server and a connected device) to see all data (including keypresses) in cleartext. CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
CVE-2022-45482 1 Lazy Mouse Project 1 Lazy Mouse 2023-12-10 N/A 9.8 CRITICAL
Lazy Mouse server enforces weak password requirements and doesn't implement rate limiting, allowing remote unauthenticated users to easily and quickly brute force the PIN and execute arbitrary commands. CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H