Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f5qp-wfgr-pm73

Опубликовано: 02 мая 2025
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

An issue was discovered on goTenna v1 devices with app 5.5.3 and firmware 0.25.5. The app there makes it possible to inject any custom message (into existing v1 networks) with any GID and Callsign via a software defined radio. This can be exploited if the device is being used in an unencrypted environment or if the cryptography has already been compromised.

An issue was discovered on goTenna v1 devices with app 5.5.3 and firmware 0.25.5. The app there makes it possible to inject any custom message (into existing v1 networks) with any GID and Callsign via a software defined radio. This can be exploited if the device is being used in an unencrypted environment or if the cryptography has already been compromised.

EPSS

Процентиль: 10%
0.00034
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-1390

Связанные уязвимости

CVSS3: 6.5
nvd
9 месяцев назад

An issue was discovered on goTenna v1 devices with app 5.5.3 and firmware 0.25.5. The app there makes it possible to inject any custom message (into existing v1 networks) with any GID and Callsign via a software defined radio. This can be exploited if the device is being used in an unencrypted environment or if the cryptography has already been compromised.

EPSS

Процентиль: 10%
0.00034
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-1390