CVE-2020-10135 - CERT CVE
ID CVE-2020-10135
Sažetak Legacy pairing and secure-connections pairing authentication in Bluetooth BR/EDR Core Specification v5.2 and earlier may allow an unauthenticated user to complete authentication without pairing credentials via adjacent access. An unauthenticated, adjacent attacker could impersonate a Bluetooth BR/EDR master or slave to pair with a previously paired remote device to successfully complete the authentication procedure without knowing the link key.
Reference
CVSS
Base: 4.8
Impact: 4.9
Exploitability:6.5
Pristup
VektorSloženostAutentikacija
ADJACENT_NETWORK LOW NONE
Impact
PovjerljivostCjelovitostDostupnost
PARTIAL PARTIAL NONE
CVSS vektor AV:A/AC:L/Au:N/C:P/I:P/A:N
Zadnje važnije ažuriranje 21-12-2021 - 12:42
Objavljeno 19-05-2020 - 16:15