Holy Stone Remote ID Module HSRID01, firmware distributed with the Drone Go2 mobile application before 1.1.8, allows unauthenticated "remote power off" actions (in broadcast mode) via multiple read operations on the ASTM Remote ID (0xFFFA) GATT.
References
Configurations
No configuration.
History
18 Nov 2024, 17:35
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
CWE | CWE-125 |
18 Nov 2024, 17:11
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
17 Nov 2024, 05:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-11-17 05:15
Updated : 2024-11-18 17:35
NVD link : CVE-2024-52876
Mitre link : CVE-2024-52876
CVE.ORG link : CVE-2024-52876
JSON object : View
Products Affected
No product.
CWE
CWE-125
Out-of-bounds Read