CVE-2016-6542 Information
Feb 14, 2021
cve
Description
The iTrack device tracking ID number also called \LosserID\ in the web API can be obtained by being in the range of an iTrack device. The tracker ID is the device’s BLE MAC address.
CVSS Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N
Reference
http://www.securityfocus.com/bid/93875 https://blog.rapid7.com/2016/10/25/multiple-bluetooth-low-energy-ble-tracker-vulnerabilities/ https://www.kb.cert.org/vuls/id/974055
Attack Complexity
HIGH
Privileges Required
NONE
User Interaction Required
NONE
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
LOW
Availability Impact
NONE
Base Score
NONE
Base Severity
3.7
Share on: