6.5
CVE-2020-16168
- EPSS 0.15%
- Veröffentlicht 07.08.2020 13:15:10
- Zuletzt bearbeitet 21.11.2024 05:06:53
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Origin Validation Error in temi Robox OS prior to 120, temi Android app up to 1.3.7931 allows remote attackers to access the REST API and MQTT broker used by the temi and send it custom data/requests via unspecified vectors.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Robotemi ≫ Temi Firmware Version < 1.3.7931
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.15% | 0.315 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 6.5 | 2.8 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
|
| nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:N/I:P/A:N
|
CWE-346 Origin Validation Error
The product does not properly verify that the source of data or communication is valid.