Added |
CVSS V3.1 |
|
NIST AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N
|
Added |
CVSS V2 |
|
NIST (AV:N/AC:H/Au:N/C:P/I:N/A:N)
|
Added |
CPE Configuration |
|
OR
*cpe:2.3:a:radarcovid:radar-covid-backend-dp3t-server:*:*:*:*:*:*:*:* versions up to (excluding) 1.1.2
*cpe:2.3:a:radarcovid:radarcovid:*:*:uniform_distribution:*:*:android:*:* versions up to (excluding) 1.0.7
*cpe:2.3:a:radarcovid:radarcovid:*:*:uniform_distribution:*:*:iphone_os:*:* versions up to (excluding) 1.0.8
*cpe:2.3:a:radarcovid:radarcovid:*:*:exponential_distribution:*:*:android:*:* versions up to (excluding) 1.1.0
*cpe:2.3:a:radarcovid:radarcovid:*:*:exponential_distribution:*:*:iphone_os:*:* versions up to (excluding) 1.1.0
|
Changed |
Reference Type |
https://github.com/DP-3T/documents/blob/master/DP3T%20-%20Best%20Practices%20for%20Operation%20Security%20in%20Proximity%20Tracing.pdf No Types Assigned
|
https://github.com/DP-3T/documents/blob/master/DP3T%20-%20Best%20Practices%20for%20Operation%20Security%20in%20Proximity%20Tracing.pdf Exploit, Third Party Advisory
|
Changed |
Reference Type |
https://github.com/RadarCOVID/radar-covid-android/commit/09d00e5ede801ca400d45c7feda5a99c34e4176c No Types Assigned
|
https://github.com/RadarCOVID/radar-covid-android/commit/09d00e5ede801ca400d45c7feda5a99c34e4176c Patch, Third Party Advisory
|
Changed |
Reference Type |
https://github.com/RadarCOVID/radar-covid-android/commit/53252773ffa81e116deabcbbea3bac96872b9888 No Types Assigned
|
https://github.com/RadarCOVID/radar-covid-android/commit/53252773ffa81e116deabcbbea3bac96872b9888 Patch, Third Party Advisory
|
Changed |
Reference Type |
https://github.com/RadarCOVID/radar-covid-android/commit/7fdc7debeb8a37faa77b53d9f9a1b4bbcff445ce No Types Assigned
|
https://github.com/RadarCOVID/radar-covid-android/commit/7fdc7debeb8a37faa77b53d9f9a1b4bbcff445ce Patch, Third Party Advisory
|
Changed |
Reference Type |
https://github.com/RadarCOVID/radar-covid-android/commit/8e5d14ec60e0c1847a4733556cf34d232c27102c No Types Assigned
|
https://github.com/RadarCOVID/radar-covid-android/commit/8e5d14ec60e0c1847a4733556cf34d232c27102c Patch, Third Party Advisory
|
Changed |
Reference Type |
https://github.com/RadarCOVID/radar-covid-android/commit/91dcfff6252055637bc9ee0c46b8f003d64a16b9 No Types Assigned
|
https://github.com/RadarCOVID/radar-covid-android/commit/91dcfff6252055637bc9ee0c46b8f003d64a16b9 Patch, Third Party Advisory
|
Changed |
Reference Type |
https://github.com/RadarCOVID/radar-covid-android/commit/9627f4d69705bca68e550eefd3df1b9abe90b215 No Types Assigned
|
https://github.com/RadarCOVID/radar-covid-android/commit/9627f4d69705bca68e550eefd3df1b9abe90b215 Patch, Third Party Advisory
|
Changed |
Reference Type |
https://github.com/RadarCOVID/radar-covid-android/commit/ea0c4cc837f72f58e2b5df1ecf0899743ec3cdf8 No Types Assigned
|
https://github.com/RadarCOVID/radar-covid-android/commit/ea0c4cc837f72f58e2b5df1ecf0899743ec3cdf8 Patch, Third Party Advisory
|
Changed |
Reference Type |
https://github.com/RadarCOVID/radar-covid-backend-dp3t-server/commit/6d30c92cc8fcbde3ded7e9518853ef278080344d No Types Assigned
|
https://github.com/RadarCOVID/radar-covid-backend-dp3t-server/commit/6d30c92cc8fcbde3ded7e9518853ef278080344d Patch, Third Party Advisory
|
Changed |
Reference Type |
https://github.com/RadarCOVID/radar-covid-backend-dp3t-server/commit/c37f81636250892670750e3989139fd76d4beffe No Types Assigned
|
https://github.com/RadarCOVID/radar-covid-backend-dp3t-server/commit/c37f81636250892670750e3989139fd76d4beffe Patch, Third Party Advisory
|
Changed |
Reference Type |
https://github.com/RadarCOVID/radar-covid-backend-dp3t-server/security/advisories/GHSA-w7jx-37x3-w2jx No Types Assigned
|
https://github.com/RadarCOVID/radar-covid-backend-dp3t-server/security/advisories/GHSA-w7jx-37x3-w2jx Third Party Advisory
|
Changed |
Reference Type |
https://github.com/RadarCOVID/radar-covid-ios/commit/2d1505d4858642995ea09f02f23c953acaa65195 No Types Assigned
|
https://github.com/RadarCOVID/radar-covid-ios/commit/2d1505d4858642995ea09f02f23c953acaa65195 Patch, Third Party Advisory
|
Added |
CVSS V2 Metadata |
|
Victim must voluntarily interact with attack mechanism
|