Hard-coded Credentials in CoolKit eWeLlink app are before 5.4.x on Android and IOS allows local attacker to unauthorized access to sensitive data via Decryption algorithm and key obtained after decompiling app
References
Link | Resource |
---|---|
https://ewelink.cc/security-advisories-and-notices/ |
Configurations
No configuration.
History
No history.
Information
Published : 2024-04-01 10:15
Updated : 2024-04-01 12:49
NVD link : CVE-2024-3130
Mitre link : CVE-2024-3130
CVE.ORG link : CVE-2024-3130
JSON object : View
Products Affected
No product.
CWE
CWE-798
Use of Hard-coded Credentials