Bluetooth kayıtları
bluetooth üreticisine ait 16 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %25
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-287 Improper Authentication3
- CWE-863 Incorrect Authorization3
- CWE-294 Authentication Bypass by Capture-replay2
- CWE-203 Observable Discrepancy2
- CWE-757 Selection of Less-Secure Algorithm During Negotiation ('Algorithm Downgrade')1
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
16 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
37İzleyin | CVE-2011-1265İstismar yok | The Bluetooth Stack 2.1 in Microsoft Windows Vista SP1 and SP2 and Windows 7 Gold and SP1 does not prevent access to objects in memory that bluetooth · bluetooth stack · CWE-94 | Yüksek8,8 | — | %5,9 | 13 Tem 2011 |
35İzleyin | CVE-2020-26559İstismar yok | Bluetooth Mesh Provisioning in the Bluetooth Mesh profile 1.0 and 1.0.1 may permit a nearby device (participating in the provisioning protocbluetooth · mesh profile · CWE-863 | Yüksek8,8 | — | %0,9 | 24 May 2021 |
32İzleyin | CVE-2020-26560İstismar yok | Bluetooth Mesh Provisioning in the Bluetooth Mesh profile 1.0 and 1.0.1 may permit a nearby device, reflecting the authentication evidence fbluetooth · mesh profile · CWE-863 | Yüksek8,1 | — | %0,9 | 24 May 2021 |
30İzleyin | CVE-2020-26556İstismar yok | Mesh Provisioning in the Bluetooth Mesh profile 1.0 and 1.0.1 may permit a nearby device, able to conduct a successful brute-force attack onbluetooth · bluetooth core specification · CWE-307 | Yüksek7,5 | — | %0,9 | 24 May 2021 |
30İzleyin | CVE-2020-26557İstismar yok | Mesh Provisioning in the Bluetooth Mesh profile 1.0 and 1.0.1 may permit a nearby device (without possession of the AuthValue used in the prbluetooth · mesh profile · CWE-287 | Yüksek7,5 | — | %0,8 | 24 May 2021 |
30İzleyin | CVE-2022-25837İstismar yok | Bluetooth® Pairing in Bluetooth Core Specification v1.0B through v5.3 may permit an unauthenticated MITM to acquire credentials with two paibluetooth · bluetooth core specification · CWE-294 | Yüksek7,5 | — | %0,4 | 12 Ara 2022 |
30İzleyin | CVE-2022-25836İstismar yok | Bluetooth® Low Energy Pairing in Bluetooth Core Specification v4.0 through v5.3 may permit an unauthenticated MITM to acquire credentials wibluetooth · bluetooth core specification · CWE-294 | Yüksek7,5 | — | %0,4 | 12 Ara 2022 |
27İzleyin | CVE-2023-24023İstismar yok | Bluetooth BR/EDR devices with Secure Simple Pairing and Secure Connections pairing in Bluetooth Core Specification 4.2 through 5.4 allow cerbluetooth · bluetooth core specification | Orta6,8 | — | %1,3 | 28 Kas 2023 |
25İzleyin | CVE-2020-15802Kavram kanıtı | Devices supporting Bluetooth before 5.1 may allow man-in-the-middle attacks, aka BLURtooth.bluetooth · bluetooth core specification · CWE-287 | Orta5,9 | — | %7,1 | 11 Eyl 2020 |
25İzleyin | CVE-2020-10134İstismar yok | Bluetooth devices supporting LE and specific BR/EDR implementations are vulnerable to method confusion attacksbluetooth · bluetooth core · CWE-351 | Orta6,3 | — | %0,7 | 19 May 2020 |
22İzleyin | CVE-2020-10135Kavram kanıtı | Bluetooth devices supporting BR/EDR v5.2 and earlier are vulnerable to impersonation attacksbluetooth · bluetooth core · CWE-757 | Orta5,4 | — | %2,4 | 19 May 2020 |
21İzleyin | CVE-2020-26555İstismar yok | Bluetooth legacy BR/EDR PIN code pairing in Bluetooth Core Specification 1.0B through 5.2 may permit an unauthenticated nearby device to spobluetooth · bluetooth core specification · CWE-863 | Orta5,4 | — | %0,9 | 24 May 2021 |
21İzleyin | CVE-2021-31615İstismar yok | Unencrypted Bluetooth Low Energy baseband links in Bluetooth Core Specifications 4.0 through 5.2 may permit an adjacent device to inject a cbluetooth · bluetooth core specification · CWE-362 | Orta5,3 | — | %0,4 | 25 Haz 2021 |
17İzleyin | CVE-2022-24695İstismar yok | Bluetooth Classic in Bluetooth Core Specification through 5.3 does not properly conceal device information for Bluetooth transceivers in Nonbluetooth · bluetooth core specification · CWE-203 | Orta4,3 | — | %0,4 | 2 Haz 2023 |
17İzleyin | CVE-2020-35473İstismar yok | An information leakage vulnerability in the Bluetooth Low Energy advertisement scan response in Bluetooth Core Specifications 4.0 through 5.bluetooth · bluetooth core specification · CWE-203 | Orta4,3 | — | %0,4 | 8 Kas 2022 |
16İzleyin | CVE-2020-26558İstismar yok | Bluetooth LE and BR/EDR secure pairing in Bluetooth Core Specification 2.1 through 5.2 may permit a nearby man-in-the-middle attacker to idebluetooth · bluetooth core specification · CWE-287 | Orta4,2 | — | %0,9 | 24 May 2021 |
- CVE-2011-126537İzleyin
The Bluetooth Stack 2.1 in Microsoft Windows Vista SP1 and SP2 and Windows 7 Gold and SP1 does not prevent access to objects in memory that
YüksekCVSS 8,8İstismar yokEPSS %6bluetooth · bluetooth stack13 Tem 2011
- CVE-2020-2655935İzleyin
Bluetooth Mesh Provisioning in the Bluetooth Mesh profile 1.0 and 1.0.1 may permit a nearby device (participating in the provisioning protoc
YüksekCVSS 8,8İstismar yokEPSS %1bluetooth · mesh profile24 May 2021
- CVE-2020-2656032İzleyin
Bluetooth Mesh Provisioning in the Bluetooth Mesh profile 1.0 and 1.0.1 may permit a nearby device, reflecting the authentication evidence f
YüksekCVSS 8,1İstismar yokEPSS %1bluetooth · mesh profile24 May 2021
- CVE-2020-2655630İzleyin
Mesh Provisioning in the Bluetooth Mesh profile 1.0 and 1.0.1 may permit a nearby device, able to conduct a successful brute-force attack on
YüksekCVSS 7,5İstismar yokEPSS %1bluetooth · bluetooth core specification24 May 2021
- CVE-2020-2655730İzleyin
Mesh Provisioning in the Bluetooth Mesh profile 1.0 and 1.0.1 may permit a nearby device (without possession of the AuthValue used in the pr
YüksekCVSS 7,5İstismar yokEPSS %1bluetooth · mesh profile24 May 2021
- CVE-2022-2583730İzleyin
Bluetooth® Pairing in Bluetooth Core Specification v1.0B through v5.3 may permit an unauthenticated MITM to acquire credentials with two pai
YüksekCVSS 7,5İstismar yokEPSS %0bluetooth · bluetooth core specification12 Ara 2022
- CVE-2022-2583630İzleyin
Bluetooth® Low Energy Pairing in Bluetooth Core Specification v4.0 through v5.3 may permit an unauthenticated MITM to acquire credentials wi
YüksekCVSS 7,5İstismar yokEPSS %0bluetooth · bluetooth core specification12 Ara 2022
- CVE-2023-2402327İzleyin
Bluetooth BR/EDR devices with Secure Simple Pairing and Secure Connections pairing in Bluetooth Core Specification 4.2 through 5.4 allow cer
OrtaCVSS 6,8İstismar yokEPSS %1bluetooth · bluetooth core specification28 Kas 2023
- CVE-2020-1580225İzleyin
Devices supporting Bluetooth before 5.1 may allow man-in-the-middle attacks, aka BLURtooth.
OrtaCVSS 5,9Kavram kanıtıEPSS %7bluetooth · bluetooth core specification11 Eyl 2020
- CVE-2020-1013425İzleyin
Bluetooth devices supporting LE and specific BR/EDR implementations are vulnerable to method confusion attacks
OrtaCVSS 6,3İstismar yokEPSS %1bluetooth · bluetooth core19 May 2020
- CVE-2020-1013522İzleyin
Bluetooth devices supporting BR/EDR v5.2 and earlier are vulnerable to impersonation attacks
OrtaCVSS 5,4Kavram kanıtıEPSS %2bluetooth · bluetooth core19 May 2020
- CVE-2020-2655521İzleyin
Bluetooth legacy BR/EDR PIN code pairing in Bluetooth Core Specification 1.0B through 5.2 may permit an unauthenticated nearby device to spo
OrtaCVSS 5,4İstismar yokEPSS %1bluetooth · bluetooth core specification24 May 2021
- CVE-2021-3161521İzleyin
Unencrypted Bluetooth Low Energy baseband links in Bluetooth Core Specifications 4.0 through 5.2 may permit an adjacent device to inject a c
OrtaCVSS 5,3İstismar yokEPSS %0bluetooth · bluetooth core specification25 Haz 2021
- CVE-2022-2469517İzleyin
Bluetooth Classic in Bluetooth Core Specification through 5.3 does not properly conceal device information for Bluetooth transceivers in Non
OrtaCVSS 4,3İstismar yokEPSS %0bluetooth · bluetooth core specification2 Haz 2023
- CVE-2020-3547317İzleyin
An information leakage vulnerability in the Bluetooth Low Energy advertisement scan response in Bluetooth Core Specifications 4.0 through 5.
OrtaCVSS 4,3İstismar yokEPSS %0bluetooth · bluetooth core specification8 Kas 2022
- CVE-2020-2655816İzleyin
Bluetooth LE and BR/EDR secure pairing in Bluetooth Core Specification 2.1 through 5.2 may permit a nearby man-in-the-middle attacker to ide
OrtaCVSS 4,2İstismar yokEPSS %1bluetooth · bluetooth core specification24 May 2021