Vulnerabilities
Vulnerable Software
Simplisafe:  Security Vulnerabilities
Authentication bypass using an alternate path or channel in SimpliSafe SS3 firmware 1.4 allows a local, unauthenticated attacker to pair a rogue keypad to an armed system.
CVSS Score
4.6
EPSS Score
0.001
Published
2020-05-02
Authentication bypass using an alternate path or channel in SimpliSafe SS3 firmware 1.4 allows a local, unauthenticated attacker to modify the Wi-Fi network the base station connects to.
CVSS Score
5.5
EPSS Score
0.001
Published
2020-02-13
Authentication bypass using an alternate path or channel in SimpliSafe SS3 firmware 1.0-1.3 allows a local, unauthenticated attacker to pair a rogue keypad to an armed system.
CVSS Score
4.6
EPSS Score
0.001
Published
2020-01-16
SimpliSafe Original has Unencrypted Sensor Transmissions, which allows physically proximate attackers to obtain potentially sensitive information about the specific times when alarm-system events occur.
CVSS Score
4.3
EPSS Score
0.0
Published
2018-05-24
In SimpliSafe Original, the Base Station fails to detect tamper attempts: it does not send a notification if a physically proximate attacker removes the battery and external power.
CVSS Score
4.6
EPSS Score
0.001
Published
2018-05-24
In SimpliSafe Original, RF Interference (e.g., an extremely strong 433.92 MHz signal) by a physically proximate attacker does not cause a notification.
CVSS Score
4.6
EPSS Score
0.001
Published
2018-05-24
SimpliSafe Original has Unencrypted Keypad Transmissions, which allows physically proximate attackers to discover the PIN.
CVSS Score
6.6
EPSS Score
0.0
Published
2018-05-24


Contact Us

Shodan ® - All rights reserved