In version 1.9.7 and prior of Insteon's Insteon for Hub Android app, the OAuth token used by the app to authorize user access is not stored in an encrypted and secure manner.
                
            References
                    | Link | Resource | 
|---|---|
| https://blog.rapid7.com/2017/09/22/multiple-vulnerabilities-in-wink-and-insteon-smart-home-systems/ | Third Party Advisory | 
| https://blog.rapid7.com/2017/09/22/multiple-vulnerabilities-in-wink-and-insteon-smart-home-systems/ | Third Party Advisory | 
Configurations
                    History
                    No history.
Information
                Published : 2018-02-22 16:29
Updated : 2024-11-21 03:27
NVD link : CVE-2017-5250
Mitre link : CVE-2017-5250
CVE.ORG link : CVE-2017-5250
JSON object : View
Products Affected
                insteon
- insteon_for_hub
