Description


The Sinilink XY-WFT1 WiFi Remote Thermostat, running firmware 1.3.6, allows an attacker to bypass the intended requirement to communicate using MQTT. It is possible to replay Sinilink aka SINILINK521 protocol (udp/1024) commands interfacing directly with the target device. This, in turn, allows for an attack to control the onboard relay without requiring authentication via the mobile application. This might result in an unacceptable temperature within the target device's physical environment.

Weaknesses



CWE-294

134c704f-9b21-4f2e-91b3-4a467353bcc0

Secondary

CWE-294

CVSS impact metrics


CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N

5.9 · Medium

Information


Source identifier

[email protected]

Vulnerability status

Modified

Published

2023-01-20T16:15:10.823Z

3 years ago

Last modified

2025-04-02T14:15:22.160Z

12 months ago