← back
CVE-2019-5633

Hickory Smart Lock Insecure Storage on iOS

CVSS 6.5 MEDIUMEPSS 0.4%CWE-922
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 6.5EPSS 0.4%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
22 Aug 2019Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
An insecure storage of sensitive information vulnerability is present in Hickory Smart for iOS mobile devices from Belwith Products, LLC. The application's database was found to contain information that could be used to control the lock devices remotely. This issue affects Hickory Smart for iOS, version 01.01.07 and prior versions.
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →