CVE-2016-6543

Severity CVSS v4.0:
Pending analysis
Type:
CWE-284 Improper Access Control
Publication date:
13/07/2018
Last modified:
09/10/2019

Description

A captured MAC/device ID of an iTrack Easy can be registered under multiple user accounts allowing access to getgps GPS data, which can allow unauthenticated parties to track the device.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ieasytec:itrack_easy:-:*:*:*:*:*:*:*