CVE-2018-10825

Severity CVSS v4.0:
Pending analysis
Type:
CWE-287 Authentication Issues
Publication date:
15/05/2018
Last modified:
07/11/2023

Description

Mimo Baby 2 devices do not use authentication or encryption for the Bluetooth Low Energy (BLE) communication from a Turtle to a Lilypad, which allows attackers to inject fake information about the position and temperature of a baby via a replay or spoofing attack.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:mimobaby:mimo_baby_2_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mimobaby:mimo_baby_2:-:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools