PoC Index

CVE-2020-16170

HIGH 7.5EPSS 1.9%

Use of Hard-coded Credentials in temi Robox OS prior to 120, temi Android app up to 1.3.7931 allows remote attackers to listen in on any ongoing calls between temi robots and their users if they can brute-force/guess a six-digit value via unspecified vectors.

CVSS v3.1
7.5 HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS v2.0
5.0 MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
EPSS
1.87% chance of exploitation in the next 30 days, 78th percentile
Published
2020-08-11
Updated
2024-08-04

Proof-of-concept exploits (1)

References

Related