CVE-2016-6542

The iTrack device tracking ID number, also called "LosserID" in the web API, can be obtained by being in the range of an iTrack device. The tracker ID is the device's BLE MAC address.
Configurations

Configuration 1 (hide)

cpe:2.3:a:ieasytec:itrackeasy:-:*:*:*:*:*:*:*

History

21 Nov 2024, 02:56

Type Values Removed Values Added
References () http://www.securityfocus.com/bid/93875 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/93875 - Third Party Advisory, VDB Entry
References () https://blog.rapid7.com/2016/10/25/multiple-bluetooth-low-energy-ble-tracker-vulnerabilities/ - Mitigation () https://blog.rapid7.com/2016/10/25/multiple-bluetooth-low-energy-ble-tracker-vulnerabilities/ - Mitigation
References () https://www.kb.cert.org/vuls/id/974055 - Third Party Advisory, US Government Resource () https://www.kb.cert.org/vuls/id/974055 - Third Party Advisory, US Government Resource

Information

Published : 2018-07-13 20:29

Updated : 2024-11-21 02:56


NVD link : CVE-2016-6542

Mitre link : CVE-2016-6542

CVE.ORG link : CVE-2016-6542


JSON object : View

Products Affected

ieasytec

  • itrackeasy
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor

CWE-20

Improper Input Validation