PT-2025-31167 · Switchbot · Switchbot App
CVE-2025-53649
·
Publicado
2025-07-29
·
Atualizado
2025-07-29
CVSS v3.1
5.1
Média
| Vetor | AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
SwitchBot App versions V6.24 through V9.12
Description
The SwitchBot App for iOS/Android contains a flaw that results in sensitive information being written to log files. Exploitation of this issue may allow an attacker with access to application logs to obtain sensitive user data.
Recommendations
Update to a version later than V9.12.
Correção
Insertion into Log File
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Switchbot App