← Back

CVE-2024-3130

nvd nist
Published: Apr 1, 2024Modified: Jun 17, 2026Deferred

JSON object

Loading...
5.7
Vector
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:N
Exploitability: 0.5 / Impact: 5.2
Source: 68870bb1-d075-4169-957d-e580b18692b9 (Secondary)

Description

Hard-coded Credentials in CoolKit eWeLlink app are before 5.4.x on Android and IOS allows local attacker to unauthorized access to sensitive data via Decryption algorithm and key obtained after decompiling app

References (2)

Source: 68870bb1-d075-4169-957d-e580b18692b9
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.