CVE-2018-11402
MEDIUMSimpliSafe Original - Cleartext Transmission of Sensitive Information via Keypad
Title source: llmDescription
SimpliSafe Original has Unencrypted Keypad Transmissions, which allows physically proximate attackers to discover the PIN.
References (2)
Core 2
Core References
Various Sources x_refsource_misc
https://simplisafe.com/files/pdf/SimpliSafe_advisory_8-17-18.pdf
Third Party Advisory x_refsource_misc
https://www.simpleorsecure.net/simplisafe-security-advisory/
Scores
CVSS v3
6.6
EPSS
0.0023
EPSS Percentile
13.5%
Attack Vector
PHYSICAL
CVSS:3.0/AV:P/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Details
CWE
CWE-319
Status
published
Products (1)
simplisafe/u9k-kp1000_firmware
Published
May 24, 2018
Tracked Since
Feb 18, 2026