First published: Fri Mar 01 2019(Updated: )
Amazon Ring Doorbell before 3.4.7 mishandles encryption, which allows attackers to obtain audio and video data, or insert spoofed video that does not correspond to the actual person at the door.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Amazon Ring Video Doorbell | <3.4.7 | |
Amazon Ring Video Doorbell Firmware | ||
All of | ||
Amazon Ring Video Doorbell | <3.4.7 | |
Amazon Ring Video Doorbell Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-9483 is rated as a high severity vulnerability due to its potential for exposing sensitive audio and video data.
To fix CVE-2019-9483, update your Amazon Ring Doorbell firmware to version 3.4.7 or later.
CVE-2019-9483 affects Amazon Ring Doorbell devices running firmware versions prior to 3.4.7.
CVE-2019-9483 can allow attackers to obtain sensitive audio and video data from the affected devices.
The risks associated with CVE-2019-9483 include unauthorized access to live or recorded footage and the potential for impersonating individuals at the door.