Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6gr4-mx2p-46wq

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

SOOIL Developments CoLtd DiabecareRS, AnyDana-i ,AnyDana-A, communication protocol of the insulin pump & AnyDana-i,AnyDana-A mobile apps doesnt use adequate measures to protect encryption keys in transit which allows unauthenticated physically proximate attacker to sniff keys via (BLE).

SOOIL Developments CoLtd DiabecareRS, AnyDana-i ,AnyDana-A, communication protocol of the insulin pump & AnyDana-i,AnyDana-A mobile apps doesnt use adequate measures to protect encryption keys in transit which allows unauthenticated physically proximate attacker to sniff keys via (BLE).

EPSS

Процентиль: 15%
0.00048
Низкий

Дефекты

CWE-522

Связанные уязвимости

CVSS3: 5.7
nvd
около 5 лет назад

SOOIL Developments CoLtd DiabecareRS, AnyDana-i ,AnyDana-A, communication protocol of the insulin pump & AnyDana-i,AnyDana-A mobile apps doesnt use adequate measures to protect encryption keys in transit which allows unauthenticated physically proximate attacker to sniff keys via (BLE).

EPSS

Процентиль: 15%
0.00048
Низкий

Дефекты

CWE-522