ZeroHour

CVE-2016-6541

CVSS 3.0
8.8 high
EPSS
1%p63
Published
()
Modified
Description

TrackR Bravo device allows unauthenticated pairing, which enables unauthenticated connected applications to write to various device attributes. Updated apps, version 5.1.6 for iOS and 2.2.5 for Android, have been released by the vendor to address the vulnerabilities in CVE-2016-6538, CVE-2016-6539, CVE-2016-6540 and CVE-2016-6541.

Vendors
thetrackr
Products
trackr bravo firmware
Weakness
CWE-306, CWE-287
Vector
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.