CVE-2023-6998: Coolkit Ewelink
High severity, CVSS 7.7. EPSS: 0.2% chance of exploitation in the next 30 days.
Improper privilege management vulnerability in CoolKit Technology eWeLink on Android and iOS allows application lockscreen bypass.This issue affects eWeLink before 5.2.0.
Affected products
- Coolkit Ewelink: before 5.2.0 (fixed in 5.2.0)
Published 2023-12-30. Last modified 2026-06-17.