CVE-2019-5633
Hickory Smart Lock Insecure Storage on iOS
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 6.5EPSS 0.4%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
22 Aug 2019Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
An insecure storage of sensitive information vulnerability is present in Hickory Smart for iOS mobile devices from Belwith Products, LLC. The application's database was found to contain information that could be used to control the lock devices remotely. This issue affects Hickory Smart for iOS, version 01.01.07 and prior versions.
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N
Affected products
Belwith Products, LLC · Hickory SmartWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →