Critical
Low
Medium
CVE-2025-34500
Overview
Deck Mate 2's firmware update mechanism accepts packages without cryptographic signature verification, encrypts them with a single hard-coded AES key shared across devices, and uses a truncated HMAC for integrity validation. Attackers with access to the update interface - typically via the unit's US...
Critical
Low
Medium
No items found.