Vulnerability Details CVE-2020-12856
OpenTrace, as used in COVIDSafe through v1.0.17, TraceTogether, ABTraceTogether, and other applications on iOS and Android, allows remote attackers to conduct long-term re-identification attacks and possibly have unspecified other impact, because of how Bluetooth is used.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.108
EPSS Ranking 93.0%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
Products affected by CVE-2020-12856
-
cpe:2.3:a:alberta:abtracetogether:-
-
cpe:2.3:a:health:covidsafe:-
-
cpe:2.3:a:health:covidsafe:1.0.11
-
cpe:2.3:a:health:covidsafe:1.0.16
-
cpe:2.3:a:health:covidsafe:1.0.17
-
cpe:2.3:a:tracetogether:tracetogether:-