CVE-2019-20469
CVSS 3.1 Score 4.6 of 10 (medium)
Details
Published Nov 7, 2024
Updated: Nov 8, 2024
CWE ID 922
Summary
CVE-2019-20469 is a vulnerability affecting One2Track 2019-12-08 devices. This issue involves the needless storage of confidential information, specifically audio files, on the smartwatch. These files, in the .amr format, are located in the audior directory. An attacker with physical access can exploit this vulnerability by connecting to the device via a USB cable and retrieving all audio files. This poses a significant risk, as the data could potentially contain sensitive information.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.