CVE-2024-7206: Ewelink Zigbee Bridge Pro
High severity, CVSS 7.0. EPSS: 0.2% chance of exploitation in the next 30 days.
SSL Pinning Bypass in eWeLink Some hardware products allows local ATTACKER to Decrypt TLS communication and Extract secrets to clone the device via Flash the modified firmware
Affected products
- Ewelink Zigbee Bridge Pro: up to and including 2.0.0
Published 2024-10-08. Last modified 2026-06-17.