CVE-2018-11399: Simplisafe u9k-ES1000 Firmware

Medium severity, CVSS 4.3. EPSS: 0.2% chance of exploitation in the next 30 days.

SimpliSafe Original has Unencrypted Sensor Transmissions, which allows physically proximate attackers to obtain potentially sensitive information about the specific times when alarm-system events occur.

Affected products

  • Simplisafe u9k-ES1000 Firmware: affected versions not specified
  • Simplisafe u9k-KR1 Firmware: affected versions not specified
  • Simplisafe u9k-MS1000 Firmware: affected versions not specified
  • Simplisafe u9k-WT1000 Firmware: affected versions not specified

Published 2018-05-24. Last modified 2026-06-17.