Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xjx5-q997-jj79

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

There is an insufficient authentication vulnerability in Huawei Band 2 and Honor Band 3. The band does not sufficiently authenticate the device try to connect to it in certain scenario. Successful exploit could allow the attacker to spoof then connect to the band.

There is an insufficient authentication vulnerability in Huawei Band 2 and Honor Band 3. The band does not sufficiently authenticate the device try to connect to it in certain scenario. Successful exploit could allow the attacker to spoof then connect to the band.

EPSS

Процентиль: 28%
0.00102
Низкий

Связанные уязвимости

CVSS3: 8.8
nvd
около 6 лет назад

There is an insufficient authentication vulnerability in Huawei Band 2 and Honor Band 3. The band does not sufficiently authenticate the device try to connect to it in certain scenario. Successful exploit could allow the attacker to spoof then connect to the band.

CVSS3: 7.5
fstec
больше 6 лет назад

Уязвимость микропрограммного обеспечения Huawei Band 2 и Honor Band 3, связанная с недостатками разграничения доступа, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 28%
0.00102
Низкий