CVE-2019-9483 describes a critical encryption vulnerability in Amazon Ring Doorbell devices prior to version 3.4.7. This flaw allows unauthenticated attackers to intercept audio and video streams or inject spoofed video, compromising privacy and security. With a CVSS score of 9.1 (CRITICAL), this vulnerability is easily exploitable over the network with no user interaction, leading to high confidentiality and integrity impacts. Despite its severity, there is currently no public exploit code (Metasploit, Nuclei, ExploitDB) and minimal community discussion or media coverage, indicating it is not actively exploited in the wild.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 3.4.7CPE matchmatch criteria | cpe:2.3:o:amazon:ring_video_doorbell_firmware:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.