Back

MEDIUM

Information Disclosure Vulnerability in Tinxy Smart Devices

Published Mar 11, 2025

Description

This vulnerability exists in the Tinxy smart devices due to storage of credentials in plaintext within the device firmware. An attacker with physical access could exploit this by extracting the firmware and analyzing the binary data to obtain the plaintext credentials stored on the vulnerable device.

Affected products

Remediation

Vendor solution

Apply mitigations as per vendor instructions (whenever available) or discontinue the use of the product if mitigations are unavailable.

Metrics

Weaknesses (1)

References (1)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner CERT-In
Published Mar 11, 2025
Updated Mar 11, 2025
Reserved Mar 11, 2025
CISA Vulnrichment
Updated Mar 11, 2025
NVD
Status Deferred
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a