Vulnerabilities
Vulnerable Software
Fastrack:  >> Reflex 2.0  Security Vulnerabilities
fastrack Reflex 2.0 W307S_REFLEX_v90.89 Activity Tracker allows a Remote attacker to change the time, date, and month via Bluetooth LE Characteristics on handle 0x0017.
CVSS Score
5.3
EPSS Score
0.001
Published
2022-12-26
fastrack Reflex 2.0 W307S_REFLEX_v90.89 Activity Tracker allows a Remote attacker to cause a Denial of Service (device outage) via crafted choices of the last three bytes of a characteristic value.
CVSS Score
7.5
EPSS Score
0.002
Published
2022-12-26
fastrack Reflex 2.0 W307S_REFLEX_v90.89 Activity Tracker allows physically proximate attackers to dump the firmware, flash custom malicious firmware, and brick the device via the Serial Wire Debug (SWD) feature.
CVSS Score
8.1
EPSS Score
0.0
Published
2022-12-26
fastrack Reflex 2.0 W307S_REFLEX_v90.89 Activity Tracker allows an Unauthenticated Remote attacker to send a malicious firmware update via BLE and brick the device.
CVSS Score
7.5
EPSS Score
0.002
Published
2022-12-26


Contact Us

Shodan ® - All rights reserved