An exploitable improper access control vulnerability exists in the bluetooth low energy functionality of Winco Fireworks FireFly FW-1007 V2.0. An attacker can connect to the device to trigger this vulnerability.
References
Link | Resource |
---|---|
https://talosintelligence.com/vulnerability_reports/TALOS-2019-0772 | Third Party Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2019-05-08 10:29
Updated : 2022-06-13 11:45
NVD link : CVE-2019-5014
Mitre link : CVE-2019-5014
JSON object : View
CWE
CWE-306
Missing Authentication for Critical Function
Products Affected
wincofireworks
- fw-1007
- fw-1007_firmware