7.5
CVE-2025-44614
- EPSS 0.04%
- Veröffentlicht 30.05.2025 00:00:00
- Zuletzt bearbeitet 22.07.2025 14:29:32
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Tinxy WiFi Lock Controller v1 RF was discovered to store users' sensitive information, including credentials and mobile phone numbers, in plaintext.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Tinxy ≫ Wifi Lock Controller V1 Rf Firmware Version-
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.04% | 0.13 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| 134c704f-9b21-4f2e-91b3-4a467353bcc0 | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
|
CWE-312 Cleartext Storage of Sensitive Information
The product stores sensitive information in cleartext within a resource that might be accessible to another control sphere.