Description
An information disclosure vulnerability exists in AZIOT 1 Node Smart Switch (16amp)- WiFi/Bluetooth Enabled Software Version: 1.1.9 due to improper access control on the UART debug interface. An attacker with physical access can connect to the UART interface and obtain sensitive information from the serial console without authentication.
Published: 2026-04-06
Score: 4.6 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Information Disclosure
Action: Patch
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 09 Apr 2026 08:30:00 +0000

Type Values Removed Values Added
Title Information Disclosure via UART Debug Interface in AZIOT 1 Node Smart Switch

Wed, 08 Apr 2026 20:15:00 +0000

Type Values Removed Values Added
Title Information Disclosure via UART Interface in AZIOT 1 Node Smart Switch
Weaknesses CWE-284

Tue, 07 Apr 2026 15:15:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 4.6, 'vector': 'CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 07 Apr 2026 09:45:00 +0000

Type Values Removed Values Added
First Time appeared Aziot
Aziot node Smart Switch
Vendors & Products Aziot
Aziot node Smart Switch

Tue, 07 Apr 2026 08:00:00 +0000

Type Values Removed Values Added
Title Information Disclosure via UART Interface in AZIOT 1 Node Smart Switch
Weaknesses CWE-200
CWE-284

Mon, 06 Apr 2026 18:00:00 +0000

Type Values Removed Values Added
Description An information disclosure vulnerability exists in AZIOT 1 Node Smart Switch (16amp)- WiFi/Bluetooth Enabled Software Version: 1.1.9 due to improper access control on the UART debug interface. An attacker with physical access can connect to the UART interface and obtain sensitive information from the serial console without authentication.
References

Subscriptions

Aziot Node Smart Switch
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2026-04-07T13:50:57.669Z

Reserved: 2026-03-04T00:00:00.000Z

Link: CVE-2026-30613

cve-icon Vulnrichment

Updated: 2026-04-07T13:50:42.371Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-04-06T18:16:41.440

Modified: 2026-04-07T15:17:38.420

Link: CVE-2026-30613

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-04-09T08:29:07Z

Weaknesses