Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Simplisafe

First CVE: May 24, 2018Active for: 8 yearsTotal CVEs: 7

SimpliSafe develops a line of residential and small-business security systems centered on wireless monitoring hardware and cloud-connected control units, with vulnerabilities clustering around authentication and data-transmission weaknesses in its base-station firmware and management interfaces. The durable signal reflects the remote-access and wireless-connectivity demands of connected security devices, where improper authentication mechanisms and cleartext handling of sensitive credentials and sensor data create persistent exposure vectors that defenders should address through firmware updates and network segmentation. Current severity, exploitation status, and exposure counts are shown alongside this summary.

FAUCET AI Generated
7
Total CVEs
More Total CVEs than 88% of tracked vendors
0.2
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 2% of tracked vendors
5.0
Avg CVSS Score
Higher Avg CVSS Score than 10% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Simplisafe over time

Volume of CVEsAvg CVSS Base Score
First CVE
May 24, 2018
8 years ago
Most Recent CVE
May 2, 2020
2,274 days ago

Products(16 total)

Top CVEs

Signals from CVEs in this vendor scope (7 CVEs).

7 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2018-11402MEDIUM
SimpliSafe Original has Unencrypted Keypad Transmissions, which allows physically proximate attackers to discover the PIN.
May 24, 20186.621NONO
CVE-2019-3998MEDIUM
Authentication bypass using an alternate path or channel in SimpliSafe SS3 firmware 1.4 allows a local, unauthenticated attacker to modify the Wi-Fi network the base station connec
Feb 13, 20205.517NONO
CVE-2019-3997MEDIUM
Authentication bypass using an alternate path or channel in SimpliSafe SS3 firmware 1.0-1.3 allows a local, unauthenticated attacker to pair a rogue keypad to an armed system.
Jan 16, 20204.617NONO
CVE-2018-11401MEDIUM
In SimpliSafe Original, RF Interference (e.g., an extremely strong 433.92 MHz signal) by a physically proximate attacker does not cause a notification.
May 24, 20184.617NONO
CVE-2018-11400MEDIUM
In SimpliSafe Original, the Base Station fails to detect tamper attempts: it does not send a notification if a physically proximate attacker removes the battery and external power.
May 24, 20184.617NONO
CVE-2018-11399MEDIUM
SimpliSafe Original has Unencrypted Sensor Transmissions, which allows physically proximate attackers to obtain potentially sensitive information about the specific times when alar
May 24, 20184.316NONO
CVE-2020-5727MEDIUM
Authentication bypass using an alternate path or channel in SimpliSafe SS3 firmware 1.4 allows a local, unauthenticated attacker to pair a rogue keypad to an armed system.
May 2, 20204.614NONO
View all 7 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products7 CVEs
100%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
Medium
Attack Vector
Local1 (14.3%)
Network0 (0.0%)
Unknown0 (0.0%)
Physical6 (85.7%)
Adjacent Network0 (0.0%)
Attack Complexity
Low7 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None5 (71.4%)
Unknown0 (0.0%)
Required2 (28.6%)
Privileges Required
Low1 (14.3%)
High0 (0.0%)
None6 (85.7%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (7 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Simplisafe.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Simplisafe — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Simplisafe's Products

View all 2 CNAs →

Top CWEs