Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mr5r-6xxx-6h84

Опубликовано: 06 фев. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

Forever KidsWatch Call Me KW-50 R36_YDR_A3PW_GM7S_V1.0_2019_07_15_16.19.24_cob_h and Forever KidsWatch Call Me KW-60 R36CW_YDE_S4_A29_2_V1.0_2023.05.24_22.49.44_cob_b allow a malicious user to gain information about the device by sending an SMS to the device which returns sensitive information.

Forever KidsWatch Call Me KW-50 R36_YDR_A3PW_GM7S_V1.0_2019_07_15_16.19.24_cob_h and Forever KidsWatch Call Me KW-60 R36CW_YDE_S4_A29_2_V1.0_2023.05.24_22.49.44_cob_b allow a malicious user to gain information about the device by sending an SMS to the device which returns sensitive information.

EPSS

Процентиль: 46%
0.00236
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-497

Связанные уязвимости

CVSS3: 9.8
nvd
около 1 года назад

Forever KidsWatch Call Me KW-50 R36_YDR_A3PW_GM7S_V1.0_2019_07_15_16.19.24_cob_h and Forever KidsWatch Call Me KW-60 R36CW_YDE_S4_A29_2_V1.0_2023.05.24_22.49.44_cob_b allow a malicious user to gain information about the device by sending an SMS to the device which returns sensitive information.

EPSS

Процентиль: 46%
0.00236
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-497