owllabs kayıtları
owllabs üreticisine ait 5 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-798 Use of Hard-coded Credentials2
- CWE-287 Improper Authentication1
- CWE-306 Missing Authentication for Critical Function1
- CWE-326 Inadequate Encryption Strength1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
5 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
35İzleyin | CVE-2022-31462İstismar yok | Owl Labs Meeting Owl 5.2.0.15 allows attackers to control the device via a backdoor password (derived from the serial number) that can be foowllabs · meeting owl pro firmware · CWE-798 | Yüksek8,8 | — | %0,9 | 2 Haz 2022 |
30İzleyin | CVE-2022-31460İstismar yok | Owl Labs Meeting Owl 5.2.0.15 allows attackers to activate Tethering Mode with hard-coded hoothoot credentials via a certain c 150 value.owllabs · meeting owl pro firmware · CWE-798 | Yüksek7,4 | — | %3,4 | 2 Haz 2022 |
28İzleyin | CVE-2022-31463İstismar yok | Owl Labs Meeting Owl 5.2.0.15 does not require a password for Bluetooth commands, because only client-side authentication is used.owllabs · meeting owl pro firmware · CWE-287 | Yüksek7,1 | — | %1,0 | 2 Haz 2022 |
26İzleyin | CVE-2022-31461İstismar yok | Owl Labs Meeting Owl 5.2.0.15 allows attackers to deactivate the passcode protection mechanism via a certain c 11 message.owllabs · meeting owl pro firmware · CWE-306 | Orta6,5 | — | %0,9 | 2 Haz 2022 |
26İzleyin | CVE-2022-31459İstismar yok | Owl Labs Meeting Owl 5.2.0.15 allows attackers to retrieve the passcode hash via a certain c 10 value over Bluetooth.owllabs · meeting owl pro firmware · CWE-326 | Orta6,5 | — | %0,8 | 2 Haz 2022 |
- CVE-2022-3146235İzleyin
Owl Labs Meeting Owl 5.2.0.15 allows attackers to control the device via a backdoor password (derived from the serial number) that can be fo
YüksekCVSS 8,8İstismar yokEPSS %1owllabs · meeting owl pro firmware2 Haz 2022
- CVE-2022-3146030İzleyin
Owl Labs Meeting Owl 5.2.0.15 allows attackers to activate Tethering Mode with hard-coded hoothoot credentials via a certain c 150 value.
YüksekCVSS 7,4İstismar yokEPSS %3owllabs · meeting owl pro firmware2 Haz 2022
- CVE-2022-3146328İzleyin
Owl Labs Meeting Owl 5.2.0.15 does not require a password for Bluetooth commands, because only client-side authentication is used.
YüksekCVSS 7,1İstismar yokEPSS %1owllabs · meeting owl pro firmware2 Haz 2022
- CVE-2022-3146126İzleyin
Owl Labs Meeting Owl 5.2.0.15 allows attackers to deactivate the passcode protection mechanism via a certain c 11 message.
OrtaCVSS 6,5İstismar yokEPSS %1owllabs · meeting owl pro firmware2 Haz 2022
- CVE-2022-3145926İzleyin
Owl Labs Meeting Owl 5.2.0.15 allows attackers to retrieve the passcode hash via a certain c 10 value over Bluetooth.
OrtaCVSS 6,5İstismar yokEPSS %1owllabs · meeting owl pro firmware2 Haz 2022