PoC Index

CVE-2023-46870

HIGH 7.3EPSS 0.4%

extcap/nrf_sniffer_ble.py, extcap/nrf_sniffer_ble.sh, extcap/SnifferAPI/*.py in Nordic Semiconductor nRF Sniffer for Bluetooth LE 3.0.0, 3.1.0, 4.0.0, 4.1.0, and 4.1.1 have set incorrect file permission, which allows attackers to do code execution via modified bash and python scripts.

CVSS v3.1
7.3 HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
EPSS
0.36% chance of exploitation in the next 30 days, 29th percentile
Published
2024-05-13
Updated
2025-02-13

Proof-of-concept exploits (1)

References

Related