SynScan
Home
How it works
Pricing
Vulnerability Database
Breach Intelligence
Search Data
Database Index
Contact
Try it now!
CVE-2020-11923
Last update: Apr 13, 2023
Description
An issue was discovered in WiZ Colors A60 1.14.0. API credentials are locally logged.
Affected Software
References
Software
From
Fixed in
wizconnected / wiz
1.14.0
1.14.0.x
http://seclists.org/fulldisclosure/2024/Jul/14
https://www.eurofins-cybersecurity.com/news/connected-devices-wiz-smart-lightbulbs/
Details
Severity:
Medium
CVE:
CVE-2020-11923
Published:
Apr 2, 2021
Updated:
Apr 13, 2023
Exploit:
CVSS v3
Severity:
Medium
Score
: 5.5
AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
CVSS v2
Severity:
Low
Score:
2.1
AV:L/AC:L/Au:N/C:P/I:N/A:N
CWEs
CWE-312
OWASP TOP 10
A3 - Sensitive Data Exposure