CVE-2023-42144

Severity CVSS v4.0:
Pending analysis
Type:
CWE-319 Cleartext Transmission of Sensitive Information
Publication date:
23/01/2024
Last modified:
20/06/2025

Description

Cleartext Transmission during initial setup in Shelly TRV 20220811-15234 v.2.1.8 allows a local attacker to obtain the Wi-Fi password.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:shelly:trv_firmware:2.1.8:*:*:*:*:*:*:*
cpe:2.3:h:shelly:trv:-:*:*:*:*:*:*:*