Weak encryption in the Quick Pairing mode in the eWeLink mobile application (Android application V4.9.2 and earlier, iOS application V4.9.1 and earlier) allows physically proximate attackers to eavesdrop on Wi-Fi credentials and other sensitive information by monitoring the Wi-Fi spectrum during the pairing process.
Advisories
Source ID Title
EUVD EUVD EUVD-2020-4990 Weak encryption in the Quick Pairing mode in the eWeLink mobile application (Android application V4.9.2 and earlier, iOS application V4.9.1 and earlier) allows physically proximate attackers to eavesdrop on Wi-Fi credentials and other sensitive information by monitoring the Wi-Fi spectrum during the pairing process.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T12:04:22.546Z

Reserved: 2020-05-07T00:00:00

Link: CVE-2020-12702

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-02-24T14:15:13.150

Modified: 2024-11-21T05:00:06.477

Link: CVE-2020-12702

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.