simplisafe records
7 published records for vendor simplisafe.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Attack profile
All records
7 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
26Monitor | CVE-2018-11402No exploit | SimpliSafe Original has Unencrypted Keypad Transmissions, which allows physically proximate attackers to discover the PIN.simplisafe · u9k-kp1000 firmware · CWE-319 | Medium6.6 | — | 0.2% | May 24, 2018 |
22Monitor | CVE-2019-3998No exploit | Authentication bypass using an alternate path or channel in SimpliSafe SS3 firmware 1.4 allows a local, unauthenticated attacker to modify tsimplisafe · simplisafe ss3 firmware · CWE-287 | Medium5.5 | — | 0.4% | Feb 13, 2020 |
18Monitor | CVE-2019-3997No exploit | Authentication bypass using an alternate path or channel in SimpliSafe SS3 firmware 1.0-1.3 allows a local, unauthenticated attacker to pairsimplisafe · ss3 firmware · CWE-287 | Medium4.6 | — | 0.4% | Jan 16, 2020 |
18Monitor | CVE-2020-5727No exploit | Authentication bypass using an alternate path or channel in SimpliSafe SS3 firmware 1.4 allows a local, unauthenticated attacker to pair a rsimplisafe · ss3 firmware · CWE-287 | Medium4.6 | — | 0.4% | May 2, 2020 |
18Monitor | CVE-2018-11400No exploit | In SimpliSafe Original, the Base Station fails to detect tamper attempts: it does not send a notification if a physically proximate attackersimplisafe · u9k-bs1000 firmware | Medium4.6 | — | 0.3% | May 24, 2018 |
18Monitor | CVE-2018-11401No exploit | In SimpliSafe Original, RF Interference (e.g., an extremely strong 433.92 MHz signal) by a physically proximate attacker does not cause a nosimplisafe · u9k-bs1000 firmware | Medium4.6 | — | 0.3% | May 24, 2018 |
17Monitor | CVE-2018-11399No exploit | SimpliSafe Original has Unencrypted Sensor Transmissions, which allows physically proximate attackers to obtain potentially sensitive informsimplisafe · u9k-es1000 firmware · CWE-319 | Medium4.3 | — | 0.2% | May 24, 2018 |
- CVE-2018-1140226Monitor
SimpliSafe Original has Unencrypted Keypad Transmissions, which allows physically proximate attackers to discover the PIN.
MediumCVSS 6.6No exploitEPSS 0%simplisafe · u9k-kp1000 firmwareMay 24, 2018
- CVE-2019-399822Monitor
Authentication bypass using an alternate path or channel in SimpliSafe SS3 firmware 1.4 allows a local, unauthenticated attacker to modify t
MediumCVSS 5.5No exploitEPSS 0%simplisafe · simplisafe ss3 firmwareFeb 13, 2020
- CVE-2019-399718Monitor
Authentication bypass using an alternate path or channel in SimpliSafe SS3 firmware 1.0-1.3 allows a local, unauthenticated attacker to pair
MediumCVSS 4.6No exploitEPSS 0%simplisafe · ss3 firmwareJan 16, 2020
- CVE-2020-572718Monitor
Authentication bypass using an alternate path or channel in SimpliSafe SS3 firmware 1.4 allows a local, unauthenticated attacker to pair a r
MediumCVSS 4.6No exploitEPSS 0%simplisafe · ss3 firmwareMay 2, 2020
- CVE-2018-1140018Monitor
In SimpliSafe Original, the Base Station fails to detect tamper attempts: it does not send a notification if a physically proximate attacker
MediumCVSS 4.6No exploitEPSS 0%simplisafe · u9k-bs1000 firmwareMay 24, 2018
- CVE-2018-1140118Monitor
In SimpliSafe Original, RF Interference (e.g., an extremely strong 433.92 MHz signal) by a physically proximate attacker does not cause a no
MediumCVSS 4.6No exploitEPSS 0%simplisafe · u9k-bs1000 firmwareMay 24, 2018
- CVE-2018-1139917Monitor
SimpliSafe Original has Unencrypted Sensor Transmissions, which allows physically proximate attackers to obtain potentially sensitive inform
MediumCVSS 4.3No exploitEPSS 0%simplisafe · u9k-es1000 firmwareMay 24, 2018