CVE-2019-9483

Severity CVSS v4.0:
Pending analysis
Type:
CWE-327 Use of a Broken or Risky Cryptographic Algorithm
Publication date:
01/03/2019
Last modified:
21/07/2021

Description

Amazon Ring Doorbell before 3.4.7 mishandles encryption, which allows attackers to obtain audio and video data, or insert spoofed video that does not correspond to the actual person at the door.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:amazon:ring_video_doorbell_firmware:*:*:*:*:*:*:*:* 3.4.7 (excluding)
cpe:2.3:h:amazon:ring_video_doorbell:-:*:*:*:*:*:*:*