AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2019-5634

MEDIUM · CVSS 6.5 EPSS 0.36%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2019-08-22 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 6.5. It affects Android.

CVE
CVE-2019-5634
Severity
MEDIUM
CVSS
6.5
EPSS
0.36%
Android

Original NVD Description

An inclusion of sensitive information in log files vulnerability is present in Hickory Smart for Android mobile devices from Belwith Products, LLC. Communications to the internet API services and direct connections to the lock via Bluetooth Low Energy (BLE) from the mobile application are logged in a debug log on the Android device at HickorySmartLog/Logs/SRDeviceLog.txt. This information was found stored in the Android device's default USB or SDcard storage paths and is accessible without rooting the device. This issue affects Hickory Smart for Android, version 01.01.43 and prior versions.

Related CVEs

Other vulnerabilities affecting the same vendor(s)