Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2018-11477

Опубликовано: 30 мая 2018
Источник: nvd
CVSS3: 6.5
CVSS2: 3.3
EPSS Низкий

Описание

An issue was discovered on Vgate iCar 2 Wi-Fi OBD2 Dongle devices. The data packets that are sent between the iOS or Android application and the OBD dongle are not encrypted. The combination of this vulnerability with the lack of wireless network protection exposes all transferred car data to the public.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:vgate:icar_2_wi-fi_obd2_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:vgate:icar_2_wi-fi_obd2:-:*:*:*:*:*:*:*

EPSS

Процентиль: 13%
0.00043
Низкий

6.5 Medium

CVSS3

3.3 Low

CVSS2

Дефекты

CWE-319

Связанные уязвимости

CVSS3: 6.5
github
больше 3 лет назад

An issue was discovered on Vgate iCar 2 Wi-Fi OBD2 Dongle devices. The data packets that are sent between the iOS or Android application and the OBD dongle are not encrypted. The combination of this vulnerability with the lack of wireless network protection exposes all transferred car data to the public.

EPSS

Процентиль: 13%
0.00043
Низкий

6.5 Medium

CVSS3

3.3 Low

CVSS2

Дефекты

CWE-319