PT-2018-10715 · Rondaful · Rondaful M1 Wristband Smart Band

Published

2018-05-31

·

Updated

2019-10-03

·

CVE-2018-11631

CVSS v2.0

3.3

Low

VectorAV:A/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Rondaful M1 Wristband Smart Band version 1
Description The issue allows remote attackers to send an arbitrary number of call or SMS notifications via crafted Bluetooth Low Energy (BLE) traffic.
Recommendations For Rondaful M1 Wristband Smart Band version 1, as a temporary workaround, consider disabling Bluetooth connectivity until a patch is available.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2018-11631

Affected Products

Rondaful M1 Wristband Smart Band