Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
JBL: Improper BLE security configurations and lack of authentication on the device's GATT server
Vulnerability Description
Due to improper BLE security configurations on the device's GATT server, an adjacent unauthenticated attacker can read and write device control commands through the mobile app service wich could render the device unusable.
CVSS Information
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
关键功能的认证机制缺失
Vulnerability Title
JBL LIVE PRO 2 TWS 访问控制错误漏洞
Vulnerability Description
JBL LIVE PRO 2 TWS是美国JBL公司的一款无线降噪耳机。 JBL LIVE PRO 2 TWS存在访问控制错误漏洞,该漏洞源于BLE安全配置不当,可能导致相邻未经验证的攻击者读写设备控制命令。
CVSS Information
N/A
Vulnerability Type
N/A