cve/2017/CVE-2017-8403.md
2024-06-18 02:51:15 +02:00

872 B

CVE-2017-8403

Description

360fly 4K cameras allow unauthenticated Wi-Fi password changes and complete access with REST by using the Bluetooth Low Energy pairing procedure, which is available at any time and does not require a password. This affects firmware 2.1.4. Exploitation can use the 360fly Android or iOS application, or the BlueZ gatttool program.

POC

Reference

Github

No PoCs found on GitHub currently.