CVE-2019-17098: August Home

Medium severity, CVSS 6.5. EPSS: 0.5% chance of exploitation in the next 30 days.

Use of hard-coded cryptographic key vulnerability in August Connect Wi-Fi Bridge App, Connect Firmware allows an attacker to decrypt an intercepted payload containing the Wi-Fi network authentication credentials. This issue affects: August Connect Wi-Fi Bridge App version v10.11.0 and prior versions on Android. August Connect Firmware version 2.2.12 and prior versions.

Affected products

  • August August Home: up to and including 10.11.0
  • August Connect Wi-Fi Bridge Firmware: up to and including 2.2.12

Published 2020-09-30. Last modified 2026-06-17.