Vulnerability Details CVE-2017-5237
Due to a lack of authentication, an unauthenticated user who knows the Eview EV-07S GPS Tracker's phone number can revert the device to a factory default configuration with an SMS command, "RESET!"
Exploit prediction scoring system (EPSS) score
EPSS Score 0.025
EPSS Ranking 84.7%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 7.8
Products affected by CVE-2017-5237
-
cpe:2.3:h:eviewgps:ev-07s_gps_tracker:-
-
cpe:2.3:o:eviewgps:ev-07s_gps_tracker_firmware:-