An improper access control vulnerability exists in Uffizio's GPS Tracker all versions that lead to sensitive information disclosure of all the connected devices. By visiting the vulnerable host at port 9000, we see it responds with a JSON body that has all the details about the devices which have been deployed.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 16 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T14:00:47.490Z
Reserved: 2020-08-11T00:00:00
Link: CVE-2020-17483
No data.
Status : Modified
Published: 2023-12-16T01:15:07.200
Modified: 2024-11-21T05:08:12.387
Link: CVE-2020-17483
No data.
OpenCVE Enrichment
No data.
Weaknesses