CVE-2016-10702
—CVSS 3.0
6.1 medium
EPSS
<1%p49
Published
()
Modified
Description
Pebble Smartwatch devices through 4.3 mishandle UUID storage, which allows attackers to read an arbitrary application's flash storage, and access an arbitrary application's JavaScript instance, by modifying a UUID value within the header of a crafted application binary.
- Vendors
- pebble
- Products
- pebble firmware
- Weakness
- CWE-200
- Vector
- CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:L/A:N
In the news0 stories
No ingested article mentions this CVE yet.