CVE-2025-44612

Tinxy WiFi Lock Controller v1 RF was discovered to transmit sensitive information in plaintext, including control information and device credentials, allowing attackers to possibly intercept and access sensitive information via a man-in-the-middle attack.
Configurations

No configuration.

History

30 May 2025, 22:15

Type Values Removed Values Added
CWE CWE-319
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.9

30 May 2025, 16:31

Type Values Removed Values Added
Summary
  • (es) Se descubrió que Tinxy WiFi Lock Controller v1 RF transmite información confidencial en texto sin formato, incluida información de control y credenciales del dispositivo, lo que permite a los atacantes interceptar y acceder a información confidencial a través de un ataque de intermediario.

30 May 2025, 03:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-05-30 03:15

Updated : 2025-05-30 22:15


NVD link : CVE-2025-44612

Mitre link : CVE-2025-44612

CVE.ORG link : CVE-2025-44612


JSON object : View

Products Affected

No product.

CWE
CWE-319

Cleartext Transmission of Sensitive Information