|
|
| |
| |
CERT-In Vulnerability Note
CIVN-2024-0329
Cleartext Storage of Sensitive Information Vulnerability in Philips Lighting Devices
Original Issue Date:October 25, 2024
Severity Rating: HIGH
Systems Affected
- Philips Smart Wi-Fi LED Batten 24-Watt - all firmware versions prior to 1.33.1
- Philips Smart Wi-Fi LED T Beamer 20-Watt - all firmware versions prior to 1.33.1
- Philips Smart Bulb 9,10,12-Watt - all firmware versions prior to 1.33.1
- Philips Smart T-Bulb 10,12-Watt - all firmware versions prior to 1.33.1
Overview
A vulnerability has been reported in Philips lighting devices which could allow an attacker with physical access the device to obtain sensitive information on the targeted devices.
Description
This vulnerability exists in Philips lighting devices due to storage of Wi-Fi credentials in plain text within the device firmware. An attacker with phys
CERT-IN - Computer Emergency Response Team - Page Requested Currently Not available
CERT-IN - Computer Emergency Response Team - Page Requested Currently Not available
| | | |