CVE-2018-11399
MEDIUMSimpliSafe Original - Cleartext Transmission of Sensitive Information via Unencrypted Sensor Transmissions
Title source: llmDescription
SimpliSafe Original has Unencrypted Sensor Transmissions, which allows physically proximate attackers to obtain potentially sensitive information about the specific times when alarm-system events occur.
References (2)
Core 2
Core References
Various Sources x_refsource_misc
https://simplisafe.com/files/pdf/SimpliSafe_advisory_8-17-18.pdf
Third Party Advisory x_refsource_misc
https://www.simpleorsecure.net/simplisafe-security-advisory/
Scores
CVSS v3
4.3
EPSS
0.0023
EPSS Percentile
13.5%
Attack Vector
PHYSICAL
CVSS:3.0/AV:P/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Details
CWE
CWE-319
Status
published
Products (4)
simplisafe/u9k-es1000_firmware
simplisafe/u9k-kr1_firmware
simplisafe/u9k-ms1000_firmware
simplisafe/u9k-wt1000_firmware
Published
May 24, 2018
Tracked Since
Feb 18, 2026