Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-32885

Опубликовано: 01 мая 2025
Источник: nvd
CVSS3: 6.5
CVSS3: 6.5
EPSS Низкий

Описание

An issue was discovered on goTenna v1 devices with app 5.5.3 and firmware 0.25.5. The app there makes it possible to inject any custom message (into existing v1 networks) with any GID and Callsign via a software defined radio. This can be exploited if the device is being used in an unencrypted environment or if the cryptography has already been compromised.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:gotenna:mesh_firmware:0.25.5:*:*:*:*:*:*:*
cpe:2.3:h:gotenna:mesh:-:*:*:*:*:*:*:*
Конфигурация 2
cpe:2.3:a:gotenna:gotenna:5.5.3:*:*:*:*:-:*:*

EPSS

Процентиль: 10%
0.00034
Низкий

6.5 Medium

CVSS3

6.5 Medium

CVSS3

Дефекты

CWE-1390

Связанные уязвимости

CVSS3: 6.5
github
9 месяцев назад

An issue was discovered on goTenna v1 devices with app 5.5.3 and firmware 0.25.5. The app there makes it possible to inject any custom message (into existing v1 networks) with any GID and Callsign via a software defined radio. This can be exploited if the device is being used in an unencrypted environment or if the cryptography has already been compromised.

EPSS

Процентиль: 10%
0.00034
Низкий

6.5 Medium

CVSS3

6.5 Medium

CVSS3

Дефекты

CWE-1390