Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2020-12857
Caching of GATT characteristic values (TempID) in COVIDSafe v1.0.15 and v1.0.16 allows a remote attacker to long-term re-identify an Android device running COVIDSafe.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.005
EPSS Ranking
65.5%
CVSS Severity
CVSS v3 Score
7.5
CVSS v2 Score
5.0
References
https://covidsafe.watch/issue-register/cve-2020-12857-tempid-identifier-was-static
https://docs.google.com/document/d/1u5a5ersKBH6eG362atALrzuXo3zuZ70qrGomWVEC27U/edit?usp=sharing
https://www.health.gov.au/resources/apps-and-tools/covidsafe-app
https://covidsafe.watch/issue-register/cve-2020-12857-tempid-identifier-was-static
https://docs.google.com/document/d/1u5a5ersKBH6eG362atALrzuXo3zuZ70qrGomWVEC27U/edit?usp=sharing
https://www.health.gov.au/resources/apps-and-tools/covidsafe-app
Products affected by CVE-2020-12857
Health
»
Covidsafe
»
Version:
N/A
cpe:2.3:a:health:covidsafe:-
Health
»
Covidsafe
»
Version:
1.0.11
cpe:2.3:a:health:covidsafe:1.0.11
Health
»
Covidsafe
»
Version:
1.0.16
cpe:2.3:a:health:covidsafe:1.0.16
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved