Security Advisories & Notices​

Security Advisories & Notices​

Security Advisory – Vulnerability Analysis of eWeLink APP Local Log Containing Partial Device Information

Title Release Date 2023/12/20 Abstract In eWeLink APP version 3.x, during the device pairing process, some device‘s information is logged locally. When attackers gain file permissions by connecting to the user’s phone, it leads to the leakage of some device information. Affected Product eWeLink APP Affected Version eWeLink APP 3.x Impact Attackers can exploit this …

Security Advisory – Vulnerability Analysis of eWeLink APP Local Log Containing Partial Device Information Read More »

Security Advisory – eWeLink 2.4G remote control light bulbs Remote Code Execution Vulnerability

Title Release Date 2023/11/07 Abstract The connection modules of some Bluetooth 2.4G remote-control devices contain a vulnerability that allows bypassing of authentication. Successfully exploiting this vulnerability may allow attackers to access restricted functionalities. Affected Product BLREAD-L Affected Version BLREAD-L 1.2.1 Impact Attackers can exploit this vulnerability to access certain restricted functionalities. Technical Details Exploitation Preconditions: …

Security Advisory – eWeLink 2.4G remote control light bulbs Remote Code Execution Vulnerability Read More »

This website use cookies to ensure you get the best experience on our website.