Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-12856

Опубликовано: 18 мая 2020
Источник: nvd
CVSS3: 9.8
CVSS2: 7.5
EPSS Средний

Описание

OpenTrace, as used in COVIDSafe through v1.0.17, TraceTogether, ABTraceTogether, and other applications on iOS and Android, allows remote attackers to conduct long-term re-identification attacks and possibly have unspecified other impact, because of how Bluetooth is used.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:alberta:abtracetogether:-:*:*:*:*:android:*:*
cpe:2.3:a:alberta:abtracetogether:-:*:*:*:*:iphone_os:*:*
cpe:2.3:a:health:covidsafe:*:*:*:*:*:android:*:*
Версия до 1.0.17 (включая)
cpe:2.3:a:health:covidsafe:-:*:*:*:*:iphone_os:*:*
cpe:2.3:a:tracetogether:tracetogether:-:*:*:*:*:android:*:*
cpe:2.3:a:tracetogether:tracetogether:-:*:*:*:*:iphone_os:*:*

EPSS

Процентиль: 93%
0.10755
Средний

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

NVD-CWE-noinfo

Связанные уязвимости

github
больше 3 лет назад

OpenTrace, as used in COVIDSafe through v1.0.17, TraceTogether, ABTraceTogether, and other applications on iOS and Android, allows remote attackers to conduct long-term re-identification attacks and possibly have unspecified other impact, because of how Bluetooth is used.

EPSS

Процентиль: 93%
0.10755
Средний

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

NVD-CWE-noinfo