Syska develops a narrow range of consumer smart-home and wearable devices, including smart lighting and smartwatch products, with durable vulnerability signals centered on information-disclosure and authorization-control issues across firmware components. The recurring weakness classes reflect common challenges in IoT device authentication and data-protection design, particularly in resource-constrained embedded environments. Current CVE volume, severity, exploitation activity, and exposure details are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Syska over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-3007HIGH The vulnerability exists in Syska SW100 Smartwatch due to an improper implementation and/or configuration of Nordic Device Firmware Update (DFU) which is used for performing Over-T | Oct 31, 2023 | 8.1 | 24 | NO | NO |
CVE-2017-18642MEDIUM Syska Smart Bulb devices through 2017-08-06 receive RGB parameters over cleartext Bluetooth Low Energy (BLE), leading to sniffing, reverse engineering, and replay attacks. | Feb 10, 2020 | 6.5 | 21 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Syska.
Media articles that mention a CVE ID that affects a product developed by Syska — matched by CVE ID, not by vendor name.