Metrics
Affected Vendors & Products
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Thu, 11 Dec 2025 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Jbl
Jbl live Pro 2 Tws Jbl tune Flex |
|
| Vendors & Products |
Jbl
Jbl live Pro 2 Tws Jbl tune Flex |
Wed, 10 Dec 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 10 Dec 2025 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Due to improper BLE security configurations on the device's GATT server, an adjacent unauthenticated attacker can read and write device control commands through the mobile app service wich could render the device unusable. | |
| Title | JBL: Improper BLE security configurations and lack of authentication on the device's GATT server | |
| Weaknesses | CWE-306 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: CERTVDE
Published:
Updated: 2025-12-10T16:37:18.940Z
Reserved: 2024-03-01T16:45:42.526Z
Link: CVE-2024-2104
Updated: 2025-12-10T16:37:12.511Z
Status : Awaiting Analysis
Published: 2025-12-10T13:16:01.987
Modified: 2025-12-12T15:18:42.140
Link: CVE-2024-2104
No data.
OpenCVE Enrichment
Updated: 2025-12-11T21:37:48Z