simplisafe 相關的公開 CVE 漏洞與安全風險資訊,提供 CVSS、EPSS、公開時間與漏洞情報資料,協助評估潛在風險與修補優先順序。
| CVE | 摘要 | 來源 | 最高 CVSS | EPSS % | 公開時間 | 更新時間 |
|---|---|---|---|---|---|---|
| CVE-2020-5727 | Authentication bypass using an alternate path or channel in SimpliSafe SS3 firmware 1.4 allows a local, unauthenticated attacker to pair a rogue keypad to an armed system. | [email protected] | 4.6 | 0.39% | 2020-05-02 | 2024-11-21 |
| CVE-2019-3998 | Authentication bypass using an alternate path or channel in SimpliSafe SS3 firmware 1.4 allows a local, unauthenticated attacker to modify the Wi-Fi network the base station connects to. | [email protected] | 5.5 | 0.36% | 2020-02-13 | 2024-11-21 |
| CVE-2019-3997 | Authentication bypass using an alternate path or channel in SimpliSafe SS3 firmware 1.0-1.3 allows a local, unauthenticated attacker to pair a rogue keypad to an armed system. | [email protected] | 4.6 | 0.39% | 2020-01-16 | 2024-11-21 |
| CVE-2018-11402 | SimpliSafe Original has Unencrypted Keypad Transmissions, which allows physically proximate attackers to discover the PIN. | [email protected] | 6.6 | 0.23% | 2018-05-24 | 2024-11-21 |
| CVE-2018-11401 | In SimpliSafe Original, RF Interference (e.g., an extremely strong 433.92 MHz signal) by a physically proximate attacker does not cause a notification. | [email protected] | 4.6 | 0.32% | 2018-05-24 | 2024-11-21 |
| CVE-2018-11400 | In SimpliSafe Original, the Base Station fails to detect tamper attempts: it does not send a notification if a physically proximate attacker removes the battery and external power. | [email protected] | 4.6 | 0.32% | 2018-05-24 | 2024-11-21 |
| CVE-2018-11399 | SimpliSafe Original has Unencrypted Sensor Transmissions, which allows physically proximate attackers to obtain potentially sensitive information about the specific times when alarm-system events occur. | [email protected] | 4.3 | 0.23% | 2018-05-24 | 2024-11-21 |