PT-2023-28423 · Easysetup · Easysetup

Publicado

2023-11-07

·

Atualizado

2023-11-15

·

CVE-2023-42555

CVSS v3.1

6.3

Média

VetorAV:L/AC:L/PR:N/UI:R/S:C/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions EasySetup versions prior to 11.1.13
Description The issue concerns the use of implicit intent for sensitive communication in EasySetup, allowing attackers to obtain the Bluetooth address of a user's device.
Recommendations For versions prior to 11.1.13, update to version 11.1.13 or later to resolve the issue.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2023-42555

Produtos afetados

Easysetup