Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Shenzhen HCC Technology MPOS M6 PLUS Bluetooth authentication replay
Vulnerability Description
A vulnerability was detected in Shenzhen HCC Technology MPOS M6 PLUS 1V.31-N. Affected by this issue is some unknown functionality of the component Bluetooth Handler. Performing a manipulation results in authentication bypass by capture-replay. The attack must originate from the local network. The attack is considered to have high complexity. The exploitation is known to be difficult. The vendor was contacted early about this disclosure but did not respond in any way.
CVSS Information
CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L
Vulnerability Type
使用捕获-重放进行的认证绕过
Vulnerability Title
HCCTG MPOS M6 PLUS 安全漏洞
Vulnerability Description
HCCTG MPOS M6 PLUS是中国华辰联创(HCCTG)公司的一款移动支付终端设备。 HCCTG MPOS M6 PLUS 1V.31-N版本存在安全漏洞,该漏洞源于组件Bluetooth Handler存在身份验证绕过。
CVSS Information
N/A
Vulnerability Type
N/A