CVE-2025-44612

Tinxy WiFi Lock Controller v1 RF was discovered to transmit sensitive information in plaintext, including control information and device credentials, allowing attackers to possibly intercept and access sensitive information via a man-in-the-middle attack.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:tinxy:wifi_lock_controller_firmware:1:*:*:*:*:*:*:*
cpe:2.3:h:tinxy:wifi_lock_controller:-:*:*:*:*:*:*:*

History

19 Jun 2025, 01:08

Type Values Removed Values Added
New CVE

Information

Published : 2025-05-30 03:15

Updated : 2025-06-19 01:08


NVD link : CVE-2025-44612

Mitre link : CVE-2025-44612

CVE.ORG link : CVE-2025-44612


JSON object : View

Products Affected

tinxy

  • wifi_lock_controller_firmware
  • wifi_lock_controller
CWE
CWE-319

Cleartext Transmission of Sensitive Information