PT-2025-23233 · Unknown · Tinxy Wifi Lock Controller

CVE-2025-44612

·

Publicado

2025-05-30

·

Atualizado

2025-07-22

CVSS v3.1

5.9

Média

VetorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Tinxy WiFi Lock Controller version v1 RF
Description The issue concerns the transmission of sensitive information in plaintext, including control information and device credentials. This allows attackers to possibly intercept and access sensitive information via a man-in-the-middle attack.
Recommendations For Tinxy WiFi Lock Controller version v1 RF, consider implementing encryption for sensitive data transmission to prevent interception. As a temporary workaround, restrict access to the device's network to minimize the risk of exploitation.

Correção

Cleartext Transmission of Sensitive Information

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2025-44612

Produtos afetados

Tinxy Wifi Lock Controller