Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Unnecessary fields in the OpenTrace/BlueTrace protocol in COVIDSafe through v1.0.17 allow a remote attacker to identify a device model by observing cleartext payload data. This allows re-identification of devices, especially less common phone models or those in low-density situations.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
COVIDSafe app 安全漏洞
Vulnerability Description
COVIDSafe app是澳大利亚的一款冠状病毒接触者追踪应用程序。 COVIDSafe app 1.0.17及之前版本中存在安全漏洞,该漏洞源于OpenTrace/BlueTrace协议中存在不必要的字段。远程攻击者可通过观察明文的payload数据利用该漏洞确认设备的型号。
CVSS Information
N/A
Vulnerability Type
N/A