Description
360fly 4K cameras allow unauthenticated Wi-Fi password changes and complete access with REST by using the Bluetooth Low Energy pairing procedure, which is available at any time and does not require a password. This affects firmware 2.1.4. Exploitation can use the 360fly Android or iOS application, or the BlueZ gatttool program.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2017-17355 | 360fly 4K cameras allow unauthenticated Wi-Fi password changes and complete access with REST by using the Bluetooth Low Energy pairing procedure, which is available at any time and does not require a password. This affects firmware 2.1.4. Exploitation can use the 360fly Android or iOS application, or the BlueZ gatttool program. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-09-16T16:22:51.004Z
Reserved: 2017-05-01T00:00:00.000Z
Link: CVE-2017-8403
No data.
Status : Modified
Published: 2017-05-01T20:59:00.170
Modified: 2026-06-17T01:26:19.657
Link: CVE-2017-8403
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-287
Improper Authentication
EUVD