CVE-2025-44614: High severity tinxy wifi lock controller vulnerability
Published May 30, 2025
·Updated
Tinxy WiFi Lock Controller v1 RF was discovered to store users' sensitive information, including credentials and mobile phone numbers, in plaintext.
Affected Software
3 affected components
Tinxy WiFi Lock Controller
All of the following
Tinxy Wifi Lock Controller V1 Rf Firmware
Tinxy WiFi Lock Controller v1 RF
Event History
May 30, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·03:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-44614?
CVE-2025-44614 has been classified as a high severity vulnerability due to the exposure of sensitive information.
2
How do I fix CVE-2025-44614?
To mitigate CVE-2025-44614, update to the latest version of the Tinxy WiFi Lock Controller that addresses this vulnerability.
3
What information is exposed by CVE-2025-44614?
CVE-2025-44614 exposes users' sensitive information including credentials and mobile phone numbers stored in plaintext.
4
Who is affected by CVE-2025-44614?
Users of Tinxy WiFi Lock Controller v1 RF are affected by CVE-2025-44614 due to the storage of sensitive data.
5
Is CVE-2025-44614 a known issue in previous versions?
Yes, CVE-2025-44614 is a known issue specifically affecting the v1 RF version of the Tinxy WiFi Lock Controller.