Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-2189

Опубликовано: 11 мар. 2025
Источник: nvd
EPSS Низкий

Описание

This vulnerability exists in the Tinxy smart devices due to storage of credentials in plaintext within the device firmware. An attacker with physical access could exploit this by extracting the firmware and analyzing the binary data to obtain the plaintext credentials stored on the vulnerable device.

EPSS

Процентиль: 8%
0.0003
Низкий

Дефекты

CWE-312

Связанные уязвимости

github
11 месяцев назад

This vulnerability exists in the Tinxy smart devices due to storage of credentials in plaintext within the device firmware. An attacker with physical access could exploit this by extracting the firmware and analyzing the binary data to obtain the plaintext credentials stored on the vulnerable device.

EPSS

Процентиль: 8%
0.0003
Низкий

Дефекты

CWE-312